The library includes a substantial README, a broad test suite, and release notes for this version. Its small user base and lack of a security policy provide little independent evidence of ongoing care.
44%
Total Score
0
60
50
Only two releases were published, with the latest in December 2016 and none in roughly 9 years and 9 months. This is strong evidence of abandonment risk despite the package reaching a stable major version.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long gap since its last release. No provided maintenance signal compensates for this inactivity.
The repository has only 2 stars, 1 fork, and 3 watchers, indicating limited adoption and a small external validation base. Popularity is supporting evidence rather than a verdict, but it reinforces the maintenance concern.
The project uses Composer and Phing for its build, but no security scanning tools were detected. Build tooling is a positive maturity signal, while the missing security scanning is a modest hygiene gap.
No repository security policy was found. This is a transparency and reporting gap, though it is secondary to the much stronger evidence about long-term inactivity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.