The package includes tests, a substantial README, and a declared MIT license, while its source repository remains available. Its small audience and absent security policy provide limited reassurance for a dependency that has not been maintained recently.
58%
Total Score
0
75
75
The package has had no releases in over five years, despite six releases overall; this is strong evidence of stalled maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and raising abandonment risk.
With 2 stars, 1 fork, and 1 watcher, the project has little visible community support, so problems are less likely to receive outside attention.
The repository has no security policy and no documented security process, leaving vulnerability reporting and response expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ~1.0 | — | — |
guzzlehttp/guzzle Version ^6.0|^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.