The package has a long history, clear release notes, tests, and matching source documentation. Recent repository activity is absent, while 24 issues remain open and workflow references are unpinned; security-policy and scanning coverage is also missing.
70%
Total Score
50
100
94
75
There were zero commits and zero active maintainers during the last three months. The recent release partly compensates, but the absence of ongoing source activity is a real maintenance concern.
The repository has 24 open issues, with no new or closed issues and no merged pull requests in the last month. This suggests limited recent issue triage and lowers confidence in responsiveness.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a repository hygiene gap rather than evidence of an unsafe release.
The repository has no security policy. That leaves vulnerability-reporting expectations unclear for a package that handles messaging infrastructure.
The single workflow was fully analyzed with no dangerous triggers or audit findings, but all 3 of its action references are unpinned. The workflow is therefore clean in observed behavior but has weaker reproducibility and update integrity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
php-amqplib/php-amqplib Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.