The package has a clear README, a small dependency set, and no install-time scripts. Its last release was nearly eight years ago, with no repository commits in nearly six years; it also lacks a security policy and scanning.
52%
Total Score
75
100
83
75
The latest release was nearly eight years ago, and there were no releases in the last 12 months. This is a substantial abandonment concern for a framework integration package.
There were no commits or active maintainers in the last three months, consistent with a repository that has been inactive for nearly six years. This materially increases abandonment risk.
The repository has zero stars and forks and only one watcher. Popularity is not required for health, but these values provide little supporting evidence of active community use.
Composer is used for builds, but no security scanning tools are configured. That is a modest transparency and maintenance gap for a dependency intended for application integration.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it is less significant than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nette/utils Version ^2.4 | — | — |
holabs/utils Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.