The package has a simple Composer-based build, one runtime dependency, and no install-time scripts. Its only releases and repository activity date to May 2019, with no tests, README, security policy, or security scanning, making long-term maintenance uncertain.
35%
Total Score
0
100
50
75
Only two releases were published on May 29, 2019, and there have been no releases in more than seven years, which is strong evidence of abandonment for a maintained dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and raising abandonment risk.
The artifact has no README, tests, or changelog, although tests and changelogs are normally repository materials and the GitHub release indicator is positive. The missing README still reduces consumer transparency for this small plugin package.
The repository has zero stars and forks and only one watcher, providing little supporting evidence of active community use or review.
Composer is used as a build tool, which is appropriate for the package, but no security scanning tools are configured.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.