Its six-file footprint and two-star repository provide little evidence of broad adoption or review. The MIT declaration and stable 1.3 release are positives, but the package offers no tests, README, or security policy to offset its long inactivity.
42%
Total Score
0
72
75
The latest release was in November 2020, with no releases in the following 12 months of the collected history; this indicates prolonged maintenance inactivity despite eight total releases.
The repository had zero commits and zero active maintainers in the last three months, consistent with the stale release history and indicating no current maintenance capacity.
The package has no README, tests, or changelog, while the repository also reports no tests or changelog. The missing tests and documentation reduce transparency for a library consumers must integrate, although the GitHub release history provides some release structure.
The repository has only 2 stars, 0 forks, and 1 watcher, providing little supporting evidence of community review or adoption; popularity is supporting evidence rather than a verdict.
Composer is used for the build, which is appropriate for this package, but no security scanning tooling is present. This is a modest transparency and maintenance gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
zendframework/zend-db Version ^2.11 | — | — |
zendframework/zend-crypt Version ^3.0 | — | — |
zendframework/zend-session Version ^2.9 | — | — |
zendframework/zend-authentication Version ^2.7 | — | — |
zendframework/zend-servicemanager Version ^3.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.