The package includes tests and a clear MIT declaration, but it lacks a README and repository security policy. Its minimal dependency footprint is helpful, though there is little evidence of ongoing project support.
43%
Total Score
0
100
72
75
Only two releases were published, with the latest about 8 years ago and none in the last 12 months. This strongly raises abandonment risk despite the regular 28-day interval between the original releases.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the package having been inactive for about 8 years. The non-archived status does not compensate for the lack of observed maintenance.
The package contains tests, which is a small positive, but it has no README for consumers and no changelog. The missing changelog is expected for a published artifact; the missing README remains a minor transparency and integration gap for a library.
The repository has zero stars, forks, and watchers, offering no supporting evidence of community adoption or review. Popularity is only supporting evidence, but its absence reinforces the maintenance concern.
Composer is used as the build tool, but no security scanning tool is configured. The missing scanner is a hygiene gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
zenodorus/filesystem Version <0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.