It has a declared MIT license, a minimal PHP-only dependency profile, and no install-time scripts. The source is still available and matches the package, but its documentation and maintenance signals are too thin for a dependable current dependency.
35%
Total Score
50
100
75
67
The package has made only one release, published in June 2016, with no releases in the last 12 months. This long period without a new release is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers during the last three months. Together with the nine-year-old release history, this indicates no current maintenance capacity.
The package and repository each contain only three files: .gitignore, composer.json, and the PHP source file. This may fit a very small utility, but it leaves little documentation or project context to support dependable adoption.
The published package and repository contain no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README reduces transparency for a library consumers must integrate.
The repository uses Composer, which fits the package ecosystem, but no security scanning tools were detected. This is a minor hygiene gap for an otherwise very small and inactive project.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.