The package is licensed, tested, and has a useful README with a small dependency footprint. Its source repository is archived, has had no commits in over seven years, and the registry marks the package abandoned; choose a maintained alternative.
15%
Total Score
0
100
50
75
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning against taking a new dependency on the package.
The package has had no releases in the last 12 months, despite being over 13 years old, and its latest release is from December 2015. This strongly supports the abandonment concerns.
There were zero commits and zero active maintainers in the last three months. Together with the archived repository, this shows no current maintenance capacity.
The linked repository is archived, and its last push was in December 2018. Archived source indicates the project is no longer maintained.
The repository has no security policy or documented security contact. This adds a transparency gap, although the stronger abandonment signals already determine the outcome.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.