There have been no releases for nearly 11 years, and the package has only two releases in total. Its small runtime dependency set is not enough to offset the lack of recent maintenance evidence.
15%
Total Score
100
17
Packagist marks the entire package as abandoned, with no replacement named. This is a severe adoption risk because the package is no longer presented as maintained.
The package has only two releases, both from October 2015, with no releases in the last 12 months. Nearly 11 years without a release strongly indicates abandonment risk.
The latest version is labeled v1.0.1-stable but is also classified as a prerelease, and half of recent releases are prereleases. This weakens release clarity, though the long inactivity is the larger concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
danielstjules/stringy Version ~1.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.