Its last release was over five years ago, with only nine releases overall. The single registry maintainer and unavailable repository visibility make ongoing maintenance and provenance difficult to verify.
12%
Total Score
33
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe warning against taking a new dependency on it.
The latest release was over five years ago, and there have been no releases in the last 12 months. This strongly indicates abandonment risk, despite the package having nine releases overall.
The package remains on the 0.x line rather than a stable major version, which adds maturity and compatibility uncertainty. No prerelease activity partly offsets concerns about release quality, but not the lack of recent maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.