The package has no tests, no security policy, and an empty README, limiting transparency for a server library. It is not deprecated or archived, and its dependency set is small.
38%
Total Score
0
100
71
75
Only two releases were published, both in December 2020, with no release in the following years. This leaves the package with a strong abandonment risk despite its stable version.
The repository recorded zero commits and zero active maintainers in the last three months, while its last push was in December 2020. This strongly indicates that maintenance has stopped.
The artifact includes a README entry but it has zero characters, and the repository has no tests or changelog. Missing tests and documentation reduce transparency for a library consumers must integrate.
The repository has zero stars and forks and only one watcher. Popularity is not decisive, but these figures provide no supporting evidence of active adoption or community maintenance.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a meaningful transparency gap for a network-facing server package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
swoft/rpc Version ~2.0.0 | — | — |
swoft/framework Version ~2.0.0 | — | — |
swoft/connection-pool Version ~2.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.