Healthy and reasonable to adopt. It has a matching organization-backed repository, recent releases and commits, clear documentation, tests, licensing, and a security policy; the main caveats are concentrated contributions and limited repository security automation.
86%
Total Score
90
100
89
100
Two contributors were active, but one made about 77% of recent commits. This is a real concentration risk, partly reduced by the organization-owned repository and the second contributor's continued activity.
The repository has no stars, forks, or watchers. This is weak supporting evidence, but popularity alone does not outweigh the observed release and commit activity.
Composer build tooling is present, but no security-scanning tooling was detected. That lowers transparency around automated security checks, though it is not by itself evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.2 || ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.