The project has no commits in the last three months and only two releases across more than two years. Its README, MIT licensing, organization-backed repository, and minimal dependency set provide useful transparency, but no tests or security policy leave maintenance confidence limited.
60%
Total Score
75
100
79
75
Only two releases have been published over 932 days, with one release in the last 12 months; this indicates a sparse release history and limited evidence of sustained maintenance.
The repository recorded zero commits and zero active maintainers in the last three months. A recent package release provides some compensating evidence, but ongoing maintenance capacity remains unclear.
Composer is used as a build tool, but no security-scanning tools were detected. This is a modest transparency and maintenance gap rather than a severe risk.
The repository has no security policy, leaving vulnerability-reporting expectations and response guidance undocumented.
Version 0.2.1 is not a stable major release, which signals an immature API, although it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.