The tiny artifact has no install-time scripts, and its stable version is straightforward to consume. Its provenance and maintenance outlook are weak, while the missing license makes adoption harder to justify.
38%
Total Score
38
50
The latest release was about 4 years and 11 months ago, with no releases in the last 12 months and only three releases overall. This is strong evidence of abandonment risk, with no newer release activity to compensate.
Neither the package nor the linked repository declares or contains a recognized license. That creates a material legal and transparency concern for a dependency.
The package contains only two files, including a single PHP logger implementation and composer.json. This may be appropriate for a tiny utility, but provides little visible project structure to support long-term maintenance.
The artifact has no README, which makes a small library harder for consumers to understand; the absence of tests and a changelog is normal for published artifacts and does not add concern here.
The linked repository is named Testlogger rather than apptestic/logger, and no README package mention was observed. That weakens confidence that the repository clearly belongs to this package.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.