The MIT license, README, and extensive repository specs improve transparency and onboarding. No security policy and the unmaintained project add operational risk for a new dependency.
38%
Total Score
50
75
75
The package has only 3 releases, with the latest on January 12, 2014 and none in the last 12 months. This is strong evidence of abandonment for a dependency last published years ago.
There were 0 commits and 0 active maintainers in the last 3 months, consistent with the repository's last push being in January 2014. This materially increases abandonment risk.
Composer build tooling is present, but no security scanning tools were found. The missing scanning is a hygiene gap, not evidence that the package is unsafe by itself.
The repository has no security policy. For a library that controls Minecraft servers through RCON, the absence of a documented vulnerability-reporting path lowers transparency.
The assessed release is still v0.1.1-beta, and all recent releases are prereleases. That indicates the API may never have reached a maintained stable maturity level.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ~2.4 | — | — |
monolog/monolog Version ~1.6 | — | — |
symfony/dom-crawler Version ~2.4 | — | — |
gries/php-source-query-class Version dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.