The stable API shape and two runtime dependencies reduce integration complexity. Registry status is clean, and organizational backing remains visible, but future fixes and security response are uncertain.
42%
Total Score
67
100
71
75
The package has only 3 releases, with none in the last 12 months; its latest release was in July 2017, nearly 9 years ago. This is strong evidence of abandonment risk.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long release gap and leaving little evidence of ongoing maintenance.
The artifact has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but a missing README is a minor transparency gap for a library.
Composer is used for builds, which is appropriate, but no security scanning tooling was detected. That weakens ongoing assurance without independently proving the package is unsafe.
The linked repository has no security policy, so there is no documented route for reporting vulnerabilities or describing security response.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ^1.21 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.