The package includes a substantial README, a small runtime dependency set, and a matching source repository. It has not released in about nine years, and the project is deprecated with its repository archived, leaving no active upstream maintenance.
12%
Total Score
100
43
50
Packagist marks the entire package as abandoned, with no replacement package supplied. This directly indicates that upstream support has ended.
The latest release was about nine years ago, with no releases in the last 12 months. This is strong evidence of abandonment for a package intended as a dependency.
The linked repository is archived and was last pushed about eight years ago. That confirms the package no longer has an active development path.
The artifact contains MIT license files and the repository also has a license file, so the release is licensed. However, the manifest declares a proprietary license while the detected license is MIT, creating a transparency mismatch.
Composer is used for builds, but no security scanning tooling is present. This is a minor hygiene gap, especially for a project that is no longer maintained.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
mobiledetect/mobiledetectlib Version ^2.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.