The package includes tests, a clear MIT license, useful documentation, and release notes for this version. Its source repository shows no commits or releases for about two years, and it has no published security policy.
52%
Total Score
50
90
75
Only two releases were published, both around September 2024, with none in the following two years. This makes ongoing maintenance uncertain despite the package having a documented release history.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with roughly two years without visible development. That is a meaningful abandonment concern for a library dependency.
The repository has no security policy. This does not show a vulnerability, but it reduces transparency about how dependency and security reports would be handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
amphp/process Version ^1.1 | — | — |
react/event-loop Version ^1.1 | — | — |
amphp/react-adapter Version dev-promise | — | — |
composer/xdebug-handler Version ^1.3 | — | — |
symfony/event-dispatcher Version ^4.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.