The package has useful documentation, tests, and a declared BSD-2-Clause license. Its small user base and lack of security tooling reduce confidence that problems will be noticed or addressed promptly.
40%
Total Score
0
69
83
The latest release was in February 2016, with no releases in the past 12 months and only two releases overall. This long period without published maintenance is a substantial abandonment concern.
There were no commits and no active maintainers in the past three months. Combined with the last push being in February 2016, this indicates that ongoing maintenance capacity is absent.
The repository has only 2 stars, 0 forks, and 1 watcher. Low popularity is supporting evidence rather than a verdict, but it suggests limited community visibility and review.
Composer build tooling is present, but no security scanning tool was detected. That is a maintenance and vulnerability-response gap, though it is less serious than the long inactivity period.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This reduces transparency for a package that performs network searches.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
brianium/nomnom Version ~1.0 | — | — |
kriswallsmith/buzz Version v0.10 | — | — |
symfony/dom-crawler Version ~2.4 | — | — |
symfony/css-selector Version ~3.0 | — | — |
symfony/property-access Version ~2.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.