The README, MIT license, and matching source repository provide clear basics for integration and inspection. The tiny implementation has no tests or security scanning, leaving limited evidence that it is maintained safely.
42%
Total Score
50
70
75
This package has only one release, published nearly 7 years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a dependency receiving no ongoing updates.
The repository has had no commits or active maintainers in the last 3 months, and its last push was nearly 6 years ago. This confirms that the registry's lack of releases reflects inactive source maintenance.
Composer is used for the build, providing basic project tooling, but the repository has no security scanning. For a dependency that has seen no recent activity, this leaves an important maintenance-control gap.
The repository has no security policy. This is a transparency gap, though it is less significant than the confirmed long-term inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ivanlulyf/bunnyphp Version ^2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.