The repository is intact and the package has a clear README with a very small dependency surface. No recent development or security policy makes ongoing maintenance harder to verify.
58%
Total Score
75
100
78
83
Only two releases have been published since March 2019, with no release in more than three years and none in the last 12 months. This is a meaningful maintenance concern despite the repository remaining available.
There were no commits and no active maintainers during the last three months, consistent with the long gap since the latest release. This weakens evidence of ongoing maintenance capacity.
The repository has zero stars and forks and six watchers, providing little supporting evidence of broad community adoption. Low popularity is not decisive for a small, focused library.
Composer is used for the build, which fits the package ecosystem, but no security scanning tooling is present. That is a transparency and hygiene limitation, not evidence that the package is unsafe.
The repository has no security policy, leaving vulnerability reporting and maintenance expectations undocumented. This matters more when combined with the lack of recent development.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.