It has a clear MIT license, a useful README, and no install-time scripts. Its small dependency surface and documented package layout do not offset the limited maintenance visibility for this integration.
12%
Total Score
100
50
100
Packagist marks the entire package as abandoned, with no replacement named. Package-level abandonment is a severe dependency risk.
The latest release was published in December 2019, and there have been no releases in the last 12 months. Nearly seven years without a release strongly suggests abandonment.
Version v0.4.1 is not a prerelease, but it remains below a stable major version and has not advanced since 2019. The lack of recent releases is the stronger concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jwilsson/spotify-web-api-php Version ^2.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.