The package has a clear README and a steady recent release history, but its repository shows no commits or active maintainers in the last three months. The small, inactive project also lacks a security policy and automated security scanning.
68%
Total Score
50
89
83
The source repository is owned by an individual account rather than an organization, providing less visible institutional backing for long-term maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, which weakens evidence of ongoing maintenance despite the recent registry releases.
The repository has zero stars and forks and only one watcher, indicating very limited visible adoption. Popularity is supporting evidence rather than a verdict, but this provides little evidence of a broad support community.
Composer is used as a build tool, but no security scanning tools are configured, leaving a modest repository hygiene gap.
The repository has no security policy, so users are given no documented reporting or response process.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.