The package has clear source alignment, a readable README, and documented notes for this release. Four registry maintainers and organization ownership provide continuity, but limited recent development and absent security tooling reduce confidence.
68%
Total Score
75
100
81
50
The package has 17 releases over 925 days and a median interval of about 6 days, but only 2 releases in the last 12 months, indicating a recent slowdown.
The repository recorded zero commits and zero active maintainers in the last three months, a meaningful sign of currently limited development activity.
Composer is used for builds, but no security scanning tools were detected, leaving a transparency and maintenance-control gap.
The repository has no security policy, so users have no documented process for reporting or handling vulnerabilities.
Version 2.1.1 is a stable, non-prerelease release, but 82% of recent releases were prereleases, which makes the overall release pattern less predictable.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
drupal/colorapi Version * | — | — |
ynorth-projects/openy_repeat Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.