The code is small, documented, tested in the repository, and has no install-time scripts. A single maintainer, no security policy, and no commits in the last three months make long-term support uncertain.
62%
Total Score
50
88
75
One registry maintainer creates a thin ownership base, although the package is small and the repository is linked to the same individual.
The package has had no registry release for more than 8 years, with only 3 releases overall; this is a meaningful maintenance concern despite the repository remaining available.
There were no commits and no active maintainers in the last 3 months, which weakens evidence of ongoing maintenance even though the repository is not archived.
The project uses Make and Composer, but no security-scanning tooling was detected, leaving a modest maintenance and review gap.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented; this is a transparency gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/http-server-middleware Version ^1.0 | — | — |
wyrihaximus/psr-7-ascii-headers Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.