The README gives clear setup and usage instructions, and the repository includes tests and static analysis. The package has had no release for nearly six years, with no recent commits, while its registry status and repository state make it a poor long-term dependency.
15%
Total Score
0
43
50
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe adoption and maintenance warning for a dependency.
The latest release was in October 2020, nearly six years before collection, and there were no releases in the last 12 months. The earlier median interval of about 66 days does not compensate for the prolonged release gap.
There were no commits and no active maintainers in the last three months. Alongside the stale release history, this indicates that maintenance has effectively stopped.
The linked repository is archived, so active maintenance should not be expected even though it was pushed in February 2026. This substantially raises abandonment risk.
The artifact contains an MIT license file and the repository also has one, so the release is licensed. However, the manifest declares it as proprietary while the detected license is MIT, creating a material metadata mismatch.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
innmind/cli Version ~2.0 | — | — |
innmind/ipc Version ~3.0 | — | — |
innmind/amqp Version ~3.0 | — | — |
innmind/json Version ^1.1 | — | — |
innmind/stack Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.