The MIT license, matching repository, and usable README make the package easy to inspect and integrate. Nearly nine years without another release or repository activity makes its code and compatibility a substantial dependency risk.
35%
Total Score
50
71
83
This is the only release, published nearly nine years ago, with no releases in the last 12 months. That strongly indicates abandonment risk despite the stable version label.
The repository recorded no commits and no active maintainers in the last three months, consistent with the package's long release gap and indicating no visible ongoing maintenance.
The repository has zero stars and forks and one watcher. Low adoption is supporting evidence of limited maturity, though it is not decisive on its own.
Composer is used for the build, but no security scanning tooling is present. This is a hygiene gap that adds concern to an already inactive project.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. The long period without maintenance makes this gap more consequential.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.