The package includes a README, tests, a recognized GPL license, and organization backing. Its release and source activity stopped over 10 years ago, making future compatibility and fixes unlikely.
38%
Total Score
50
78
50
The latest release was published over 10 years ago, with no releases in the last 12 months. Thirteen historical releases show prior activity, but the prolonged gap indicates substantial abandonment risk.
There were no commits or active maintainers in the last three months, consistent with a project that has been inactive for over 10 years. This is the clearest evidence that fixes and updates are unlikely.
There was no issue or pull-request activity in the last month and one issue remains open. This reinforces the signs of inactivity, though the small project size limits how much issue volume alone can show.
The repository has only 1 star and 7 forks, indicating a small user base and limited visible community support. Popularity is supporting evidence rather than a verdict, so this adds only modest concern.
Composer is used for builds, but no security scanning tooling is present. The missing scanner is a hygiene gap, while the build tooling itself is appropriate for this package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ~1.0 | — | — |
doctrine/orm Version ~2.2 | — | — |
symfony/console Version ~2.0 | — | — |
doctrine/migrations Version ~1.3 | — | — |
jdorn/sql-formatter Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.