Its stable version and single runtime dependency keep the maintenance burden low. The repository is not archived and the package identity matches, but it has no security policy or automated workflow, leaving little evidence of ongoing care.
42%
Total Score
0
100
75
50
The latest release was about seven years ago, with no releases in the last 12 months and only three releases overall. This is strong evidence of abandonment risk, despite the stable version.
The repository had no commits or active maintainers in the last three months, consistent with the package's long release gap. No provided maintenance signal compensates for this inactivity.
The repository has zero stars and forks and only one watcher, showing little visible adoption or community support. Popularity is supporting evidence rather than a verdict, but it reinforces the limited maintenance evidence.
The repository has no security policy. For a small package this is a transparency gap, although the low adoption and limited scope reduce its weight relative to the maintenance concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
bradtreloar/html_php_mail Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.