The MIT license and small dependency surface reduce adoption friction. The README is brief, while limited project safeguards leave less evidence of ongoing care.
60%
Total Score
75
100
79
50
The package has 18 releases since March 2020, but none in the last 12 months; its latest release was in May 2025. This indicates a meaningful slowdown despite its previously regular median release interval of about 44 days.
The repository had zero commits and zero active maintainers in the last three months. Combined with no releases in the last 12 months, this raises concern about slowing maintenance.
The repository has only 3 stars, 4 forks, and no watchers. Popularity is supporting evidence rather than a verdict, but these low figures provide little independent evidence of broad adoption or review.
Composer build tooling is present, but no security scanning tools were detected. For a small PHP integration library this is a hygiene gap, not evidence that the release is unsafe.
The repository has no security policy. This weakens vulnerability-reporting transparency and leaves a maintenance gap that is not compensated by the other provided signals.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.