The artifact is transparent and lightweight, with a usable README, matching source tree, and Composer-only runtime dependency. Its small footprint limits exposure, but the long maintenance gap makes newer PHP compatibility uncertain.
62%
Total Score
50
100
81
75
The package has had no releases in more than 11 years, with only three releases concentrated in June 2015. This strongly suggests maintenance has stopped, although a small stable library may need few changes.
There were no commits or active maintainers in the last three months, and the repository has not changed since 2015. This is the main abandonment and compatibility concern.
The repository uses Composer build tooling, which fits the package ecosystem, but it has no security scanning. For this small, long-stagnant package that is a minor transparency gap rather than a severe risk.
The linked repository is not archived, but its last push was in June 2015, consistent with the separate evidence that active maintenance has ended.
No repository security policy is present. This limits disclosure guidance, though the package is small and has no other supplied security warning.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.