The small codebase is clearly licensed and tied to a matching organization-owned repository, with no install-time scripts. Its PHP 5.4-era documentation and lack of recent releases make long-term compatibility and support uncertain.
45%
Total Score
100
50
69
83
The latest release was in May 2017, with no releases in the last 12 months and only three releases overall across nearly ten years. This is strong evidence of abandonment risk despite the repository remaining available.
It declares only two runtime dependencies, the PHP platform and its pagination library, which keeps the dependency surface small. The PHP 5.4 target also indicates an outdated compatibility baseline.
The repository has zero stars and one fork, indicating little visible adoption. Popularity is only supporting evidence, but it provides no compensating signal for the old release history.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tooling is present. This is a modest hygiene gap rather than a standalone dependency risk.
The linked repository is not archived and was last pushed in February 2022, providing some evidence that the project was maintained after the last package release. However, that activity is still more than four years old.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fdevs/pagination Version ~0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.