The README, release notes, package contents, and organization-backed repository provide useful context for integration. Pin 1.6.1 and account for the lack of recent maintenance or security-policy coverage.
62%
Total Score
50
100
83
75
There were 0 commits and 0 active maintainers in the last 3 months, following a last push in December 2024; this is the main abandonment concern for a package consumers may need maintained.
The package has existed since October 2019 with 10 releases, but it has had no releases in the last 12 months; this indicates a mature but currently inactive release stream.
There are 2 open issues and 1 open pull request, with no issues or pull requests newly created or merged in the last month; this is consistent with limited current project activity.
The repository has only 1 star, 6 forks, and 3 watchers, providing little supporting evidence of broad community use; popularity is supporting evidence rather than a verdict.
The repository uses Composer, but no security-scanning tools were detected. The build setup is appropriate, while the missing scanning coverage is a modest transparency gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.1|^2.0|^3.0 | — | — |
monolog/monolog Version ^1.24|^2.0|^3.0 | — | — |
myclabs/php-enum Version ^1.7 | — | — |
psr/http-message Version ^1.0|^2.0 | — | — |
guzzlehttp/guzzle Version ^6.3 || ^7.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.