The repository includes tests, documentation, and a matching MIT license. Its single registry maintainer, minimal popularity, and lack of a security policy leave little evidence of ongoing support.
34%
Total Score
75
100
56
75
The package has had no release in more than 10 years and none in the last 12 months; the latest release was February 2016. This is strong evidence of abandonment for a client library.
The published artifact includes a readable README, while repository tests are present. The README explicitly says the API is under development and should not be used in production, which materially limits adoption confidence.
There is one open issue and no new or closed issues or pull requests in the last month. This is consistent with an inactive project, though the counts are too small to establish a severe problem alone.
The repository has 1 star and 1 fork, providing little supporting evidence of broad review or an active user community. Low popularity is not decisive for a small package, but it offers no compensation for the lack of recent activity.
The project uses Composer and Make, which supports reproducible development structure, but no security scanning tools were detected. The tooling is therefore partly positive without offsetting the broader maintenance concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.