There has been no commit activity in the last three months, and the project lacks a security policy despite having security scanning. The stable version, MIT license, release notes, and organization ownership do not offset the withdrawal and archival signals.
12%
Total Score
67
64
75
Packagist marks the entire package as abandoned, with no replacement provided. Package-level deprecation is a severe adoption risk because future maintenance and support are uncertain.
The repository had 0 commits and 0 active maintainers in the last three months. This provides direct evidence of absent recent maintenance capacity.
The linked repository is archived, which strongly indicates the project is no longer intended for active development. Its last push was on November 10, 2025, but archival status outweighs that recent timestamp.
The package has existed since 2016 with 13 releases, but it has had 0 releases in the last 12 months. Its long history is outweighed by the current release pause and abandonment status.
No security policy was found in the repository. This is a transparency and incident-response gap, although the repository does use Sonar and GitGuardian scanning.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.