The source project still has three active contributors, a matching repository, tests, documentation, and a clear MIT license. Issue handling is currently inactive and the project has no security policy or scanning, so future maintenance deserves attention.
68%
Total Score
88
100
83
50
The package has had no registry release since October 2017—nearly nine years—despite three releases in its earlier history. This is a substantial freshness concern, although recent repository commits provide some evidence that the source is not abandoned.
The repository has 40 open issues and 12 open pull requests, but no new or closed issues or pull requests in the last month. That lack of visible issue handling is a maintenance concern.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning reduces assurance about ongoing maintenance hygiene without proving a concrete defect.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a transparency and maintenance gap for a library used in applications.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version >=2.3 | — | — |
creof/geo-parser Version ~2.0 | — | — |
creof/wkb-parser Version ~2.0 | — | — |
creof/wkt-parser Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.