The module has a stable version, a declared license, and no install-time scripts. Its very old release and repository activity, minimal adoption, absent tests, and missing security policy leave maintenance and support risk high.
38%
Total Score
50
50
50
The package has had no release in roughly 7 years and none in the last 12 months, despite only six releases overall. This is the strongest evidence of abandonment risk.
The package includes release notes for this version and uses GitHub releases, which is positive documentation evidence. However, it has no README and no tests; the missing tests are normal for published artifacts, while the missing README mildly reduces consumer transparency.
There have been no new or closed issues or pull requests in the last month, with two issues still open and no active pull requests. This supports the conclusion that maintenance is dormant.
The repository has only 1 star, 1 fork, and 1 watcher. Popularity is not decisive by itself, but this provides little evidence of an active user or contributor base to compensate for the long inactivity.
Composer is used as the build tool, but no security-scanning tooling is present. This is a modest supply-chain hygiene gap and does not outweigh the stronger evidence about maintenance inactivity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.