No commits or active maintainers have been recorded for about eight years, and the repository has no security scanning. It does have tests, release notes, and a matching source repository, but those positives do not offset the maintenance risk.
15%
Total Score
50
69
75
Packagist marks the entire package as abandoned and names api-skeletons/doctrine-criteria as its replacement. This is a direct indication that new dependencies should move elsewhere.
The package has had no release in about eight years: its latest release was in June 2018, with no releases in the last 12 months. That strongly indicates abandonment.
The repository recorded zero commits and zero active maintainers in the last three months, with its last push in July 2018. This leaves current maintenance and compatibility concerns unaddressed.
Composer build tooling is present, but no security scanning tools were detected. The build setup is useful, though it does not compensate for the inactive project.
The repository has no security policy, reducing transparency about vulnerability reporting and response. This compounds the package's long-standing lack of maintenance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/collections Version ^1.5 | — | — |
doctrine/doctrine-module Version ^1.2 || ^2.1 | — | — |
doctrine/doctrine-orm-module Version ^1.1 || ^2.1 | — | — |
zendframework/zend-modulemanager Version ^2.7.2 | — | — |
zendframework/zend-servicemanager Version ^2.7.6 || ^3.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.