The package is licensed and has no install-time scripts, but its README is empty and the repository has no security policy or scanning. Its small dependency set limits complexity.
45%
Total Score
0
69
75
The package had four releases clustered between December 2 and December 4, 2024, then none for about 21 months. This is strong evidence of abandonment risk despite the package not being deprecated.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long release pause and limited ongoing maintenance evidence.
The package includes a README file, but it is empty, and no tests or changelog were published. Missing tests and changelogs are normal for artifacts; the empty consumer documentation is a minor gap.
The linked repository is named php-crawler rather than html-link-finder, and the package name was not found in its README. That weakens confidence that the source repository clearly represents this package.
Composer build tooling is present, but no security-scanning tooling was detected. This leaves fewer visible safeguards for an actively maintained dependency.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.2 | — | — |
illuminate/support Version ^8.0|^9.0|^10.0 | — | — |
guzzlehttp/promises Version ^2.0 | — | — |
symfony/dom-crawler Version ^7.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.