The package is licensed, documented, and has no install scripts. Its small project has had no commits for about nine months and has no security policy, making future fixes uncertain.
58%
Total Score
50
86
83
The package has five releases, but all were published on the same day and none followed during the subsequent roughly nine months, indicating limited demonstrated maintenance continuity.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the broader lack of releases and raising the risk that defects will remain unfixed.
Composer build tooling is present, but no security-scanning tool is reported, leaving a modest repository hygiene gap for a package handling external service integrations.
The repository has no security policy, so users have no documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
xin/capsule Version ^1.0 | — | — |
xin/support Version ^1.0 | — | — |
w7corp/easywechat Version ^6.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.