The package has a clear README, tests, matching source repository, and an explicit MPL-2.0 license. It is very new, with only two releases published today, and the repository has no recent three-month commit activity or security policy.
68%
Total Score
50
79
50
Only two releases exist, both published today, so there is not enough history to demonstrate a reliable release pattern. This reflects immaturity rather than established abandonment.
The repository records zero commits and zero active maintainers in the last three months. Because the package is only one day old, this is limited evidence, but it leaves long-term maintenance unproven.
The project uses Composer build tooling, but no security-scanning tool was detected. This is a modest transparency and maintenance gap, not a severe risk on its own.
The repository has no security policy. For a new library this reduces the clarity of vulnerability reporting and maintenance expectations, though it does not by itself make the release unfit.
Version v0.1.1 is not a stable major release, indicating an early-stage API that may change. It is not marked as a prerelease, which partly offsets the concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
youmad/endurance-foundation Version ^0.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.