The package offers only a 12-character README and has no published security policy or security scanning. Its MIT declaration, stable versioning, matching repository, and lack of install scripts provide some transparency, but not enough to offset the maintenance risk.
38%
Total Score
0
71
75
The latest release was June 22, 2021, and there have been no releases in over 5 years. Although 24 releases show earlier activity, the prolonged gap is a serious abandonment concern.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the release gap and indicating no recent maintenance capacity.
The package includes a README, but it is only 12 characters long, offering very little guidance to developers integrating this library. Missing tests and changelog files are normal packaging practice and do not lower the score.
Composer build tooling is present, but no security scanning tooling was detected. That limits evidence of ongoing dependency and vulnerability hygiene.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency and maintenance gap, though it is less severe than the lack of recent activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
gregwar/captcha Version ~1.1 | — | — |
firebase/php-jwt Version ~5.2 | — | — |
wuxian/sgame-rbac Version ~3.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.