The source repository includes tests and a stable release, but the package has seen no releases in nearly seven years and no commits in the latest three months. Its very small public footprint and absent security policy add transparency and maintenance concerns.
45%
Total Score
50
100
78
75
The latest release was on November 15, 2019, with no releases in the last 12 months. This long release gap is a substantial maintenance concern for a dependency.
There were zero commits and zero active maintainers in the latest three months. Combined with the old last push, this indicates a project that is not currently maintained.
The linked repository is owned by an individual account rather than an organization. That is not inherently unhealthy, but it provides less visible institutional backing for a project already showing prolonged inactivity.
The repository has one star, one fork, and one watcher, indicating very limited independent visibility and community validation. This increases uncertainty but is supporting evidence rather than a verdict by itself.
The repository uses Composer, showing basic build tooling, but no security scanning tools were detected. The missing scanning is a modest hygiene gap for a package handling MIME data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
pear/mail_mime Version ^1.10 | — | — |
pear/pear-core-minimal Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.