The package includes a usable README, a stable release line, and a declared license, but the artifact license differs from the detected license. Its organization backing and matching repository add context, not current maintenance capacity.
18%
Total Score
50
50
50
Packagist marks the entire package as abandoned, with no replacement provided. Package-level deprecation is a severe adoption risk.
The package has nine releases over roughly five years, but it has had no release in more than four years, indicating substantial abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, providing no evidence of current maintenance capacity.
The linked repository is archived and was last pushed in April 2022, confirming that active source maintenance has ended.
The package declares EUPL-1.1 and includes a license file, but the detected artifact license is EPL-1.0, so the licensing evidence is inconsistent.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.