The organization-backed project has a clear README, repository tests, an Apache license, and no install-time scripts. Recent commit activity is absent, security scanning and a security policy are missing, and the release workflow uses an archived action without pinned references.
57%
Total Score
50
50
78
83
The repository recorded zero commits and zero active maintainers in the last three months. This is the strongest maintenance concern, although the recorded push in repository_archived shows the project is not wholly abandoned.
Nine runtime dependencies are substantial for a task-scheduling component and increase integration and maintenance surface, though they are coherent framework and infrastructure dependencies.
The package is about 530 days old with three releases in the last 12 months, but only four releases overall and a latest release about nine months before collection indicate a modest release cadence.
The repository has only 2 stars, 1 fork, and 1 watcher, indicating a very small public user and contributor base. Popularity is supporting evidence, but this still limits visible community backing.
Composer build tooling is present, but no security scanning tools are configured, leaving an avoidable gap in automated security hygiene.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
hyperf/di Version ^3.0 | — | — |
hyperf/redis Version ^3.0 | — | — |
hyperf/config Version ^3.0 | — | — |
hyperf/logger Version ^3.0 | — | — |
hyperf/crontab Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.