It includes tests, a usable README, and matching MIT licensing. Its single-person project has had no recorded repository activity for over three years, and no security policy is present.
55%
Total Score
25
75
75
The package has had three releases since April 2022, but none in the last three years and none in the past 12 months, indicating prolonged inactivity.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing that maintenance has stopped.
Only one registry publishing maintainer is listed. That is a limited continuity base for a user-owned project, and the lack of recent commits provides no evidence of active backup capacity.
Composer build tooling is present, but no security scanning tools were detected. This is a modest hygiene gap rather than a severe dependency risk.
The repository has no security policy. This reduces transparency for reporting and handling vulnerabilities, although it does not by itself show that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/cache Version ^6 | — | — |
psr/http-client Version ^1.0 | — | — |
php-http/discovery Version ^1.14 | — | — |
symfony/http-foundation Version ^6.1 | — | — |
php-http/client-implementation Version ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.