Usable with caveats: it is actively released, backed by an organization, and has a matching source repository. Adoption carries maintenance risk because all recent commits come from one contributor and the small project has no tests, changelog, or security policy.
72%
Total Score
75
83
90
The package includes a substantial README, but neither the artifact nor repository has tests or a changelog. For a small seven-file library this is a real transparency and maintenance gap, though the README documents usage.
One contributor made all 6 commits in the last 3 months, creating a concentrated maintenance risk. Organization ownership provides some ability to hand maintenance off, so this is a caution rather than a severe abandonment signal.
There are no new issues or pull requests in the last month, and no pull requests were merged. This gives little evidence of community review or issue handling, although the absence of reported issues is not itself abandonment.
The repository has zero stars and forks and one watcher, so there is little public adoption evidence. Popularity is supporting evidence rather than a requirement, and the package's active release history is more informative here.
Composer is used as a build tool, which fits this PHP package, but no security scanning tools are configured. That leaves a modest transparency and assurance gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.