The project has a clear README, tests in its repository, matching source ownership, and a recent release history. Recent commit activity is absent, the package remains pre-1.0, and no security policy is published, so long-term maintenance is uncertain.
66%
Total Score
50
81
83
The repository has zero commits and zero active maintainers in the last three months. This is a concrete recent-maintenance gap, despite the release history showing earlier publishing activity.
The repository has zero stars and forks and one watcher, indicating a very small user and contributor base. Popularity is only supporting evidence, so this modestly reinforces maintenance uncertainty rather than determining the verdict.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene gap, not evidence that the package is unsafe.
The repository has no published security policy. This limits disclosure transparency for a database-related library, though it does not by itself indicate abandonment.
The latest registry version is 0.0.4 and the package is not at a stable major version, indicating an immature API and greater compatibility risk for consumers.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/yaml Version ^7.2.0 | — | — |
doctrine/dbal Version ^4.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.