35%
Total Score
unhealthy
Risky: no release or commit activity since November 2016.
The package has only two releases, both published in November 2016, with no releases in nearly 10 years. This is strong evidence of abandonment for a dependency that may need compatibility updates.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's nearly 10-year release gap. No provided maintenance signal compensates for this inactivity.
The published artifact contains only three files: composer.json and two source files. That is not inherently unhealthy for a small Composer plugin, but it provides little visible project context or supporting material.
The linked repository name does not match the package name, and the package name is not confirmed in its README. This creates uncertainty about whether the repository is the package's intended project, although naming differences can occur for subpackages.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.