The license is clear and the repository matches the package, supporting basic transparency. There is no security policy or automated security scanning.
8%
Total Score
0
42
50
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning that the release should not be adopted for new dependencies.
The package has only two releases, and none were published in the last 12 months; the latest release is from May 2018. This supports the abandonment concern.
The repository recorded no commits or active maintainers in the last three months, consistent with the archived state and lack of ongoing maintenance.
The linked repository is archived and was last updated in May 2018, so upstream maintenance and issue response are effectively unavailable.
Composer is used for builds, but no security-scanning tooling is present. This is a minor supply-chain hygiene gap alongside the broader maintenance failure.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.