The MIT license and matching repository make the package easy to inspect. Its single release and no commits for nearly five years leave little evidence of ongoing support, while no security policy adds a smaller concern.
38%
Total Score
25
60
50
This package has only one release, published nearly five years ago, with no releases in the last 12 months. That provides little evidence of continued maintenance.
The repository recorded no commits and no active maintainers in the last three months, consistent with a project that has effectively stopped receiving maintenance.
One registry maintainer is reasonable for a small user-owned project, but there is no broader maintainer base shown to provide continuity if that maintainer becomes inactive.
The package includes a README, but it is only 47 characters and provides minimal guidance for consumers. The absence of tests and a changelog is not treated as a packaging gap here.
Composer build tooling is present, but no security scanning tools were detected. This modestly limits assurance, especially alongside the lack of recent maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.