The four-file repository has no README or security policy, leaving little guidance for consumers or evidence of ongoing care. Its zero-star repository and absent security tooling add uncertainty despite a valid MIT license and no install scripts.
32%
Total Score
50
67
67
The package has had only two releases, with none in the last 12 months; its latest release was nearly 10 years ago. This strongly increases abandonment risk.
The complete package and repository each contain only four files, including two source files and composer.json. This small surface may be intentional, but it provides little evidence of mature maintenance or documentation.
The package has no README, while absent tests and a changelog are normal for published artifacts and are not concerns here. The missing README is a real consumer-transparency gap for a library.
The repository is owned by an individual user rather than an organization, so there is no visible organizational backing to compensate for the very small and inactive project.
The repository has zero stars and zero forks, with one watcher. Popularity is not required for health, but these counts provide no supporting evidence of community adoption or review.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.