The package also lacks a README and repository security policy, making adoption and reporting less transparent. Its small dependency set and MIT declaration are helpful, but do not offset the maintenance gap.
35%
Total Score
25
70
75
The latest release was in March 2017, and there have been no releases in more than nine years. The 19-release history shows earlier activity but no current maintenance.
The repository has recorded zero commits and zero active maintainers in the last three months, consistent with the long period since the last release and indicating abandonment risk.
The published package has no README, tests, or changelog, and the repository also reports none. The missing README reduces consumer guidance for this library, although absent tests and changelog files are normal packaging gaps rather than decisive evidence.
There has been no issue or pull-request activity in the last month. While no open issues is orderly, the complete lack of recent interaction provides no evidence of ongoing support.
The linked repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency and maintenance gap, though it is less severe than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
intervention/image Version ^2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.