The package includes a license, tests, changelog, and no install-time scripts. Its organization-backed repository is not archived, but recent commit activity is absent and several workflow actions are unpinned.
62%
Total Score
75
100
83
67
The latest release was over five years ago, with no releases in the last 12 months; this raises abandonment and compatibility concerns despite three total releases.
There were no commits and no active maintainers in the three-month measurement window, which weakens confidence in ongoing maintenance even though the repository is not archived.
The repository has only 1 star and 3 forks, indicating limited adoption. Popularity is supporting evidence rather than a decisive health measure, especially given organization backing.
Composer build tooling is present, but no security scanning tools were detected; this is a modest hygiene gap rather than evidence of unsafe behavior.
The repository has no published security policy, reducing transparency for reporting and handling vulnerabilities in a service client library.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
horde/http Version ^3 | — | — |
horde/translation Version ^3 | — | — |
horde/xml_element Version ^3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.