60%
Total Score
caution
A first-day release with no commit history or security policy has limited evidence of maintenance.
This is the package's first release, published 0 days ago, with only one release recorded. That is expected for a new package but provides no track record for judging continued maintenance.
The repository recorded 0 commits and 0 active maintainers in the last 3 months. Because the package is newly published, this is partly explained by its age, but it leaves maintenance capacity unproven.
Composer is used as the build tool, but no security-scanning tools were detected. This is a hygiene gap rather than evidence that the package is unsafe.
The repository has no security policy. That reduces transparency about vulnerability reporting and response, although it is not by itself evidence of abandonment.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.