The package is a very small client library with no tests, changelog, or security policy, limiting transparency and maintenance confidence. Its single runtime dependency and Composer build setup are otherwise straightforward.
10%
Total Score
13
50
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning against taking a new dependency on it.
This package has only one release, published over seven years ago, with no releases in the last 12 months. That strongly indicates abandonment rather than a stable ongoing maintenance pattern.
The linked repository is archived and was last pushed in September 2019, so active maintenance and future fixes cannot be expected.
The artifact includes a README, but it is only 38 characters long and the project has no tests or changelog. The GitHub release for this version is a small positive, but it does not offset the limited project documentation.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a secondary transparency gap alongside the stronger maintenance concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/http-client Version v4.3.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.