It includes a clear MIT license, tests, and no install-time scripts. Its small dependency set and matching repository do not offset the lack of ongoing maintenance.
8%
Total Score
33
100
50
83
Packagist marks the entire package as abandoned, with no replacement identified. This is a direct warning against taking a new dependency on it.
The package was last released in March 2016 and has had no releases in the last 12 months. This long period without a release indicates severe abandonment risk.
There were no commits and no active maintainers in the last three months, consistent with the repository having been inactive since 2016. This is strong evidence of abandonment.
The linked repository is archived and was last pushed in March 2016. Archived source is no longer maintained and makes future fixes or compatibility work unlikely.
The repository is owned by an individual user rather than an organization, and no broader project backing is shown. That leaves limited visible maintenance capacity for an archived package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.