The MIT licensing and small dependency set make the package straightforward to evaluate and integrate. Its documentation is still a template in places, so maintenance and consumer guidance are limited.
38%
Total Score
50
100
78
83
The package includes a README and changelog, but the README still contains placeholder description and usage text. The absence of packaged tests is normal and not a concern by itself.
The package has had only two releases, both published in January 2021, with no release in more than five years. This is strong evidence of abandonment for a dependency that may need compatibility updates.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and leaving little evidence of ongoing maintenance.
The repository has one star, zero forks, and one watcher, providing little supporting evidence of broad review or community maintenance. Low popularity alone is not disqualifying, but it does not offset the inactivity.
Composer is used for the build, which fits the package ecosystem, but no security scanning tools were detected. This is a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
gettext/gettext Version 3.* | — | — |
sepia/po-parser Version dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.