Usable with caveats: the package is licensed, documented, tested, and backed by a matching repository, but it has had no release or commit activity for about six years. Depend on it only if its older Growl integration still fits your supported environment.
58%
Total Score
50
81
75
Only two releases have been published, and there have been no releases in about six years. This indicates limited ongoing maintenance, although a small stable package can still be usable.
The repository recorded zero commits and zero active maintainers during the last three months, with no recent release activity to compensate for the inactivity.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency gap rather than a severe risk for this small, mature package.
The linked repository is not archived, but its last push was about six years ago, reinforcing the maintenance concern shown by the release history.
No repository security policy was found. That weakens vulnerability-reporting transparency, though it does not by itself show that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
pear/net_growl Version ~2.7 | — | — |
monolog/monolog Version ~1.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.