The project has been untouched for about eight years, with no recent commits or releases. Clear licensing, tests, documentation, and a matching repository help, but they do not offset the abandonment risk for a live dependency.
42%
Total Score
0
78
83
Only two releases were published, both in June 2018, with no releases in the last 12 months. That long release gap is a substantial maintenance concern.
The repository has had zero commits and zero active maintainers in the last three months, consistent with the nearly eight-year release gap and indicating likely abandonment.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no visible adoption or community buffer for an inactive project.
Composer is used for builds, which is appropriate, but no security scanning tooling is present. This is a modest transparency and maintenance gap rather than a standalone reason to reject the package.
The repository has no security policy. For a small, inactive web application that handles API credentials, this reduces transparency about vulnerability reporting and maintenance responsibility.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
silex/silex Version ~2.0 | — | — |
phpunit/phpunit Version ^7 | — | — |
symfony/browser-kit Version * | — | — |
j7mbo/twitter-api-php Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.