Library for parsing Pohoda import response XML
48%
Total Score
50
67
83
The package has only one release, published nearly 10 years ago, with no releases in the last 12 months. This is strong evidence of stalled maintenance for a dependency.
The package and repository are both owned by the same individual, with no organizational backing shown. A single-owner project can be healthy, but here it offers limited redundancy alongside the stale release history.
There is one open issue and one open pull request, with no new or closed activity in the last month. This suggests unresolved maintenance work without recent evidence of response.
The repository has 1 star, 1 fork, and no watchers, indicating very limited independent adoption. Popularity is supporting evidence rather than a verdict, but it provides little confidence in ongoing community support.
Composer is used as the build tool, but no security scanning tools are present. The missing scanning is a modest transparency gap for a package with no recent release activity.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.