The stable version, matching source repository, and declared GPL license provide useful baseline transparency. One maintainer, no security policy, and very low repository activity make long-term support less certain.
58%
Total Score
50
100
78
83
Only one registry maintainer is listed, leaving limited visible publishing redundancy. The repository is user-owned rather than organization-backed, so there is no provided evidence that a broader team offsets this concentration.
The package has 25 releases since November 2022, but none in the last 12 months and its latest release was in November 2024, about 22 months ago. This materially raises abandonment risk despite its earlier release history.
There were 0 commits and 0 active maintainers in the last 3 months, indicating that maintenance has currently stopped or greatly slowed.
The repository has 1 star, 0 forks, and 1 watcher. Low popularity is supporting evidence rather than a verdict, but it provides little evidence of a broad user or contributor community.
Composer is used for the build, which fits the package ecosystem, but no security-scanning tools are present. The missing scanning is a modest hygiene gap rather than a standalone adoption blocker.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpmailer/phpmailer Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.