The repository is clearly tied to the package, includes tests, and has a matching Apache-2.0 license. Its small user base, absent security policy, and long period without maintenance reduce confidence in continued support.
61%
Total Score
67
100
78
83
There were zero commits and zero active maintainers in the last three months. Combined with the last push in September 2023, this indicates maintenance has effectively stopped.
The package has 21 releases over roughly eight years, but there have been no releases in the last three years. That is a meaningful sign of stalled maintenance for a dependency handling an external API.
The repository has zero stars and one fork, indicating a very small external user base. Popularity is supporting evidence rather than a verdict, but this provides little independent evidence of ongoing adoption.
Composer is used as the build tool, but no security-scanning tool was detected. The missing scan is a modest repository-hygiene gap, not evidence that the release is unsafe.
The linked GCDTech repository is not archived, although its last push was in September 2023. The active repository status is positive, but it does not offset the prolonged lack of recent activity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
rhubarbphp/module-restapi Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.