The package includes a clear README, an MIT license, and release notes for this version. Its tiny repository has no tests, security policy, or security scanning, leaving limited evidence of ongoing maintenance.
42%
Total Score
50
75
83
The last release was about two years ago, and there were no releases in the past 12 months after only four releases overall. This indicates a substantial abandonment risk despite the package reaching a stable 1.1.2 release.
The repository recorded no commits and no active maintainers in the past three months, consistent with the roughly two-year gap since its last push. There is no provided maintenance signal that compensates for this inactivity.
The repository has zero stars and zero forks, with two watchers. Popularity is only supporting evidence, but these numbers provide little external evidence of adoption or community support.
The repository uses Composer build tooling, but no security scanning tools were detected. The missing scanning is a modest hygiene gap, while the build tooling supports basic project maintenance.
No security policy was found in the repository. For a network-facing PHP library, this reduces transparency around vulnerability reporting, though it is less serious than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.