The codebase is small, licensed, tested, and has no install-time scripts. Its repository has seen no activity since 2014, leaving little evidence of ongoing maintenance.
18%
Total Score
50
100
56
75
Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption risk because the registry explicitly withdraws support for the package.
There have been no releases in about 12 years, and no releases in the last 12 months. That strongly indicates the package is no longer maintained, despite the repository not being archived.
There are no open issues or pull requests and no recent issue or pull-request activity. While this may reflect a small stable project, it provides no evidence of active maintenance alongside the old release history.
The repository has zero stars and forks and only one watcher. Popularity is not required for a healthy package, but these counts provide no supporting evidence of an active user or contributor community.
Composer is used for the build, which fits the package ecosystem. No security scanning tools are present, but this is a secondary gap compared with the package's long inactivity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.