The package is small, dependency-light, licensed under MIT, and has a usable README. It has no deprecation notice or install-time scripts, but its long-term maintenance capacity remains unclear.
42%
Total Score
50
100
78
83
This is the package's only release, published over four years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk, despite the package being small and stable.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history's prolonged inactivity. No stronger maintenance signal compensates for this gap.
The repository has 0 stars, 0 forks, and 1 watcher. Popularity is only supporting evidence, but these figures provide no indication of a broader community to offset the inactive maintainer activity.
Composer is used as the build tool, but no security scanning tool is configured. The missing scanner is a modest hygiene gap, not a standalone dependency-health failure for this small package.
The repository has no security policy. This limits vulnerability-reporting transparency, although the package's small scope and minimal dependency profile partly reduce the practical impact.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.