The package is small, clearly documented, MIT-licensed, and has no install-time scripts or runtime libraries. Its organization-backed repository has tests and release notes, but there is no recent maintenance or security scanning to support continued use.
15%
Total Score
25
100
56
83
Packagist marks the entire package as abandoned, with no replacement provided. Package-level deprecation is a severe adoption risk even though this specific release is stable.
The package has only three releases, with the latest published in August 2015 and none in the last 12 months. Its long release gap indicates that fixes and compatibility updates are unlikely.
The repository recorded zero commits and zero active maintainers in the last three months. This confirms the lack of current development rather than merely showing a slow release cadence.
The source repository is archived and was last pushed in May 2017, so it is no longer receiving normal maintenance. This strongly increases abandonment and compatibility risk.
The repository is owned by the indigophp organization, providing some project backing. That does not compensate for the repository being archived and the package being abandoned.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.