Tests, documentation, a matching MIT license, and no install-time scripts provide a solid package baseline. Its older Lumen 5 and Swagger-era dependencies may require compatibility checks in a current application.
42%
Total Score
25
100
78
75
This is the package's only release, published over 10 years ago, with no releases in the last 12 months. That leaves compatibility and maintenance risk largely unresolved.
There were zero commits and zero active maintainers in the last 3 months, consistent with the repository's last push being over 9 years ago. This is strong evidence of abandonment risk.
One registry publishing account is listed. This is a small publishing base, but registry access records do not establish actual maintenance capacity and the repository owner is an individual.
The repository has zero stars, two forks, and three watchers. Low adoption is supporting evidence of limited community reinforcement, though popularity alone does not determine health.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene concern, not a severe dependency risk by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
zircote/swagger-php Version ~2.0 | — | — |
laravel/lumen-framework Version ~5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.