The last release was over 11 years ago, and the repository has had no commits in the last three months. It also has no security policy, although it includes a README and a small dependency set.
10%
Total Score
0
100
50
50
Packagist marks the package as abandoned at package scope, with no replacement provided. This is a severe adoption concern because maintenance responsibility is unclear.
The package has had no releases in over 11 years, despite only seven releases overall. This indicates prolonged abandonment rather than a merely slow cadence.
There were no commits and no active maintainers in the last three months, reinforcing the long period without release maintenance.
The linked repository is archived, and its last push was over 7 years ago. An archived source project is a strong sign that fixes and compatibility updates are unlikely.
The repository has no security policy, leaving no documented path for reporting vulnerabilities. This adds a transparency gap, especially for a debugging web application handling application data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
itsgoingd/clockwork Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.