42%
Total Score
unhealthy
Risky: the only release was 823 days ago and the repository has had no commits in the last three months.
This is the sole release, published 823 days ago, with no releases in the last 12 months. That strongly limits evidence of continued maintenance.
There were zero commits and zero active maintainers in the last three months, leaving no recent evidence that defects or compatibility changes are being addressed.
The package has no declared license, license file, or repository license file, leaving its reuse terms unclear for dependents.
One registry maintainer provides a thin publishing base. This is a concern because the repository is user-owned rather than shown as organization-backed, though actual activity is the stronger maintenance evidence here.
The registry namespace and repository owner are aligned, and the source is user-owned rather than organization-owned. This supports package identity but offers limited backing capacity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filp/whoops Version ^2.15 | — | — |
nikic/fast-route Version ^1.3 | — | — |
psr/http-message Version ^2.0 | — | — |
vlucas/phpdotenv Version ^5.6 | — | — |
psr/http-server-handler Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.