The README and tests make the code easier to assess, and the release line is stable. Its single registry maintainer, no recent commits, and absent security policy leave little evidence of continued support.
20%
Total Score
50
100
81
50
The registry marks the entire package as abandoned and names nonsapiens/south-african-id-number-faker as its replacement. This is a direct reason not to start a new dependency on this package.
Only one registry account has publishing access, leaving a thin publishing base. The repository is user-owned, so there is no organization backing shown to compensate for that concentration.
There were no commits and no active maintainers in the last three months. Although the latest release was recent, the lack of current development weakens evidence of ongoing support.
Composer build tooling is present, but no security-scanning tools were detected. This is a modest hygiene gap rather than evidence that the release is unsafe by itself.
The repository has no security policy. This is a transparency and issue-handling gap, especially for a package generating sensitive-looking identity-number data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fakerphp/faker Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.