Clear documentation, licensing, and tests make integration easier. The roughly nine-year release and commit gap, combined with minimal repository adoption and no security policy, makes future compatibility and maintenance uncertain.
38%
Total Score
0
79
75
The package has only two releases, with the latest published about nine years ago and none in the last 12 months. That is strong evidence of abandonment risk for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. No provided signal shows compensating current maintenance.
The repository has zero stars and two forks, indicating very limited visible adoption. Popularity is supporting evidence rather than decisive, but it reinforces the maintenance concern.
No repository security policy was found. This is a transparency and maintenance gap, although it is less significant than the absence of recent releases and commits.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0 | — | — |
zendframework/zend-log Version ^2.9 | — | — |
zendframework/zend-stdlib Version ^3.0 | — | — |
zendframework/zend-eventmanager Version ^3.0 | — | — |
zendframework/zend-modulemanager Version ^2.7.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.