It has no security policy or automated security scanning, which limits transparency. Organization ownership and a non-deprecated registry status do not offset the lack of ongoing maintenance.
18%
Total Score
50
64
50
Only two releases were published, both in May 2014, with no releases in the last 12 months and roughly 12 years since the latest release. This indicates severe abandonment risk.
The repository has recorded zero commits and zero active maintainers in the last three months, consistent with the package having received no activity since 2014.
The repository has 0 stars, 0 forks, and 1 watcher. Popularity is only supporting evidence, but these values provide no meaningful adoption signal to offset the maintenance concerns.
Composer is used for builds, but no security scanning tools are present. Build tooling supports reproducibility, while the missing security scanning modestly reduces assurance.
The linked repository is not archived, so it has not been explicitly withdrawn. Its last push in 2014 still indicates that the repository state is effectively dormant.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.