The package includes a useful README, tests, release notes, and a matching MIT license. Its small project has had no commits in the last three months and no release since August 2016, while no security policy is present.
40%
Total Score
0
78
50
The latest release was about 10 years ago, with no releases in the last 12 months. The early five-release history shows prior activity but does not offset the prolonged inactivity.
There were 0 commits and 0 active maintainers in the last three months, consistent with the long gap since the last release and indicating high abandonment risk.
The repository has only 5 stars and 1 fork, providing little supporting evidence of broad adoption. Low popularity alone is not decisive for a small package.
Composer is used as the build tool, but no security scanning tools are configured. This is a modest transparency and maintenance gap rather than evidence of an unsafe release.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This matters more for a framework with network and Redis integrations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
got/stark Version * | — | — |
monolog/monolog Version * | — | — |
php-curl-class/php-curl-class Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.