The package is clearly licensed, documented, and tied to a matching source repository. Its small dependency surface and stable release are helpful, but ongoing maintenance capacity is uncertain.
58%
Total Score
50
100
86
83
Only two releases were published, both on February 9, 2025, and there were no releases in the last 12 months. This indicates limited release maturity and a long period without updates.
The repository had no commits and no active maintainers in the last three months, consistent with the absence of recent registry releases. This raises maintenance and abandonment concerns.
The repository uses Composer for builds, but no security scanning tools were detected. The missing scanning is a modest hygiene gap, not evidence of unsafe code by itself.
The repository has no security policy. This limits the project's published vulnerability-reporting process, though it does not by itself show that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
pocketmine/pocketmine-mp Version ^5.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.