The package has a clear README, matching source repository, MIT licensing, and release notes for this version. Its abandoned registry status, archived repository, and lack of recent commits make long-term dependency risk unacceptable.
15%
Total Score
50
56
67
Packagist marks the entire package as abandoned, with no replacement supplied. This is a severe warning against taking a new dependency on it.
Although the package has 10 releases, all were published between November 3 and November 8, 2023, with no releases in the last 12 months despite the package being about 2 years and 11 months old.
The repository recorded zero commits and zero active maintainers during the last 3 months, reinforcing the lack of ongoing maintenance.
The linked source repository is archived, indicating the project is no longer intended for active maintenance even though it was pushed recently enough to appear in repository metadata.
There were no new or closed issues or pull requests in the last month and no merged pull requests, offering no evidence of active project upkeep.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cslant/telegram-git-notifier Version ^1.3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.