The README, release notes, matching repository, and organization backing provide useful adoption context. Maintenance has slowed, while the absent security policy and unpinned workflow actions add manageable hygiene concerns.
60%
Total Score
75
100
89
83
Only two releases have been published since March 2022, with no release in the last 12 months; this is a meaningful sign of limited ongoing maintenance.
There were zero commits and zero active maintainers in the last 3 months, indicating a thin recent maintenance signal. The recent repository push partly offsets this but does not show sustained activity.
The repository has no stars and one fork, so there is little community adoption evidence. Popularity is supporting evidence only and does not outweigh the direct maintenance signals.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented for a package that integrates application error reporting.
Both workflows were analyzed cleanly with no detected injection or high-severity findings, but all four action references are unpinned. The workflow_run trigger is ordinary here and has no reported untrusted checkout or script-injection sink.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^1.0.0 | — | — |
bugsnag/bugsnag Version ^3.23.1 | — | — |
laminas/laminas-mvc Version ^3.3 | — | — |
laminas/laminas-stdlib Version ^3.18.0 | — | — |
laminas/laminas-servicemanager Version ^3.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.