The package has a clear MIT license, tests, a changelog, and a substantial README. Its maintenance and security coverage are weak, with no recent repository activity, no security policy, and no automated security scanning.
38%
Total Score
75
75
88
The latest release was over 8 years ago, and there were no releases in the last 12 months. This is strong evidence of abandonment for a framework integration package.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and leaving compatibility issues unlikely to be addressed.
The repository has 1 star, 0 forks, and 0 watchers. Low visibility is supporting caution, though popularity alone is not decisive for a small package.
Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and maintenance gap rather than evidence of a specific defect.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in a package that runs as server infrastructure.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
garveen/fastcgi Version ^0.1 | — | — |
laravel/framework Version ~5.1 | — | — |
zendframework/zend-diactoros Version ^1.3 | — | — |
symfony/psr-http-message-bridge Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.