The repository includes tests, a matching README, and a clear MIT license. Its long inactivity and absence of security documentation make future fixes and responsible maintenance uncertain.
44%
Total Score
25
100
79
75
The package has 106 releases since 2013, but none in the last five years; the latest release was July 2021. This sustained release gap is a substantial abandonment concern.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the prolonged release gap and limited evidence of ongoing maintenance.
There were no new or merged pull requests and no new or closed issues in the last month. This provides no evidence of current project activity, though the open issue count is unknown.
The repository has zero stars, forks, and watchers, offering little supporting evidence of an active user or contributor community. Popularity is only supporting evidence, so this reinforces rather than establishes the maintenance concern.
The linked repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap, although it is less serious than the inactivity evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/psr7 Version 2.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.