The MIT license, readable README, release notes, and lack of install-time scripts provide useful transparency. They do not offset the package's abandonment indicators, so choose an actively maintained replacement.
12%
Total Score
25
50
75
Packagist marks the entire package as abandoned, with no replacement package specified. That is a direct warning against taking a new dependency on it.
The latest release was about 10 years ago, with no releases in the last 12 months. This indicates the package is not receiving ongoing maintenance.
The repository had 0 commits and 0 active maintainers in the last 3 months, consistent with the archived state and long gap since the latest release.
The linked repository is archived, and its last push was about 5 years ago. An archived source project is a severe abandonment signal.
There are 11 open issues, but no new or closed issues and no pull-request activity in the last month. This suggests unresolved maintenance demand without active project response.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.