The package has a clear MIT license, a usable README, tests, a matching repository, and no install-time scripts. Security scanning is absent, and the single-person project has limited activity, so maintenance capacity is modest.
58%
Total Score
50
75
88
The latest release was published in April 2018, more than 8 years ago, with no releases in the last 12 months. This is the main abandonment concern despite a substantial release history of 13 versions.
The repository recorded no commits and no active maintainers in the last 3 months. Combined with the old latest release, this indicates very limited ongoing maintenance.
There were no new or closed issues or pull requests in the last month, while one issue and one pull request remain open. This supports the picture of a largely inactive project.
Composer build tooling is present, but no security scanning tools were detected. The build is structured, while automated security coverage is limited.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though it is not evidence of a vulnerability.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.