The small project has no recent repository activity and no security scanning, which leaves little evidence of ongoing care. It is licensed and has a clear README, but the release is several years old.
38%
Total Score
33
100
71
88
The latest release was published in April 2017, with no releases in the last 12 months and only four releases overall. This is strong evidence of abandonment risk for a dependency released nearly nine years ago.
There were zero commits and zero active maintainers in the last three months. Combined with the last push being in 2020, this indicates that maintenance has effectively stopped.
The repository is owned by an individual account rather than an organization, providing limited visible backing for continued maintenance. The available activity data also shows no current maintainer activity.
There are no open issues or pull requests and no recent issue or pull-request activity. This is consistent with a dormant project, although it does not alone prove abandonment.
Composer is used as a build tool, which is appropriate for this PHP package, but no security scanning tools are present. The missing scanning is a transparency and maintenance gap rather than evidence of maliciousness.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.