The package includes a clear README, matching GPL-3.0 licensing, and release notes for this version. Its small project has had no commits or releases for about three years, and it has no security policy.
57%
Total Score
67
79
50
Only two releases have been published since 2017, with no release in about three years and none in the last 12 months. This indicates very slow maintenance for a library dependency.
There were no commits and no active maintainers in the last three months, consistent with the roughly three-year release gap. This materially raises abandonment risk.
There has been no new or closed issue or pull request activity in the last month, with two issues still open. This supports the picture of a quiet, minimally maintained project.
The repository uses Composer, but no security scanning tools were detected. For a small PHP library this is a modest transparency and maintenance concern, not a severe risk by itself.
No security policy was found in the repository. This weakens vulnerability-reporting transparency, although it is less significant than the observed maintenance slowdown.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.