The lean runtime dependency set and MIT licensing make adoption straightforward. Documentation and release notes are present, but the missing security policy leaves less guidance for handling issues.
58%
Total Score
75
100
88
75
The package has 37 releases since November 2015, but none in the last 12 months and its latest release was 3 years and 8 months ago. This points to substantial maintenance slowdown despite its established history.
The repository had no commits and no active maintainers in the last 3 months. Combined with the old latest push, this is evidence of an inactive project and raises abandonment risk.
The repository uses Composer, which fits the package ecosystem, but it reports no security-scanning tools. That is a modest transparency and maintenance weakness, not evidence of an unsafe release by itself.
No security policy was found in the repository, leaving vulnerability-reporting expectations and response guidance unclear.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.