The README, tests, license, and focused dependency set make the codebase understandable. There is no active path for fixes or releases, leaving compatibility and maintenance risks with adopters.
8%
Total Score
25
100
40
Packagist marks the package abandoned at package scope with no replacement, which is a severe adoption concern rather than a release-specific warning.
The package has only three releases and none in nearly 12 years; this strongly indicates abandonment for a new dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the archived project state.
The linked repository is archived, and its last push was nearly 12 years ago, indicating the project is no longer maintained.
The repository is owned by the Guzzle organization, which provides project context, but that backing does not compensate for the archived and inactive state.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~4.0|~5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.