The MIT license, focused README, and matching organization repository make the package easy to inspect and integrate. Its small dependency set and lack of install scripts reduce routine adoption friction.
60%
Total Score
75
100
88
83
The package is only 106 days old and has two releases, with the releases arriving about 18 hours apart. That is too little history to establish dependable long-term maintenance.
The repository recorded zero commits and zero active maintainers in the last three months. For a package only 106 days old, this leaves maintenance continuity unproven and raises abandonment risk.
Composer build tooling is present, but no security-scanning tooling was detected. For a small package this is a modest transparency and maintenance gap, not evidence of a defect.
The repository has no security policy. This weakens the project's documented response path for vulnerabilities, though the package's small scope limits the severity of the gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
craftcms/cms Version ^4.0 || ^5.0 | — | — |
webhubworks/weclapp-api-core Version 3.1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.