The repository is tiny and has one maintainer, while its README still documents integration and the package has no install scripts. Its stable version and modest dependency set reduce change risk, but not the abandonment concern.
36%
Total Score
50
100
60
75
The latest release was published in May 2017, with no releases in the last 12 months; nearly nine years without a release is strong evidence of abandonment risk.
The package declares no license, contains no license file, and the linked repository has no license file, leaving reuse and redistribution rights unclear.
Only one registry account has publish access. The linked repository is user-owned rather than organization-backed, so there is little visible maintainer redundancy.
The repository has 1 star, 0 forks, and 1 watcher, providing little evidence of a wider community that could notice or address problems if the maintainer stops responding.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities in a package that sends logs to a remote server.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/monolog-bundle Version ~2.4|3.* | — | — |
symfony/dependency-injection Version ~2.3|3.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.