The package is licensed, documented, and backed by a matching organization repository with tests. Its limited release history and absent recent commits indicate a largely inactive project, while missing security scanning adds a smaller maintenance concern.
45%
Total Score
75
100
88
83
Only two releases exist, with the latest on January 21, 2018 and none in the last 12 months. This long release gap is a meaningful abandonment concern.
There were zero commits and zero active maintainers during the last three months. Combined with the old last push, this is strong evidence that maintenance has stopped.
Three issues remain open, with no issues or pull requests opened or closed in the last month, suggesting unresolved maintenance needs and no visible current response.
Composer build tooling is present, but no security scanning tools were detected. That is a smaller transparency and maintenance weakness for a package intended to be depended on.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it is less serious than the project's prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
botman/botman Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.