Its dependency surface is small, but the source repository could not be found, limiting verification. No release activity for about nine years and a single registry maintainer make continued support unlikely.
12%
Total Score
100
17
Packagist marks the entire package as abandoned, with no replacement named. This is a severe adoption risk because it indicates the package is no longer supported as a dependency.
The last release was about nine years ago, with no releases in the past 12 months. The long period without updates strongly indicates abandonment for an API client library.
Version 0.2.3 is not a prerelease, which avoids one instability concern, but the 0.x major version still suggests limited maturity and does not offset the package's abandonment evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.