It has a clear BSD-3-Clause license, tests, documentation, and release notes for this version. The repository also lacks a security policy and security scanning, leaving limited evidence of ongoing project hygiene.
15%
Total Score
25
50
75
Packagist marks the entire package as abandoned and names harp-orm/validate as its replacement. Package-level abandonment is a severe adoption risk even though the repository is not archived.
The latest release was published in August 2014, with no releases in the last 12 months. A roughly 12-year release gap strongly indicates abandonment for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and providing no evidence of current maintenance.
There has been no new or closed issue activity in the last month, and the repository has one open pull request. This adds modest evidence of inactivity, though issue volume alone is not decisive.
The repository has 1 star and no forks, offering little supporting evidence of community use or external review. Low popularity is secondary to the abandonment signals.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.