The focused package has a README, a stable 1.0.7 release, one runtime dependency, and organization-backed source. Its declared GPL-2.0-or-later license conflicts with the MIT license file. The narrow project has no tests or security policy and has seen no activity since June 2018.
38%
Total Score
0
50
50
The latest release was over eight years ago, with no releases in the last 12 months; this is strong evidence of abandonment for a dependency that may need compatibility updates.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package having been inactive since June 2018.
A license file is present, so the release is licensed, but its detected MIT license conflicts with the manifest's GPL-2.0-or-later declaration and creates avoidable legal ambiguity.
Composer build tooling is present, but no security-scanning tooling was detected. This is a modest transparency and maintenance concern rather than a severe risk on its own.
The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities; the package's long inactivity makes this gap more consequential.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
behat/mink Version ~1.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.