Its README and MIT licensing make adoption easier, while the minimal repository offers little evidence of broader support. Future compatibility and maintenance therefore depend on a very narrow project base.
42%
Total Score
50
63
75
Only two releases occurred, both on 12 August 2019, with no release in nearly seven years. This is strong evidence of abandonment risk for a package still offered at version v0.0.2.
The registry namespace and repository are owned by the same individual account rather than an organization. This is consistent ownership, but it provides limited evidence of organizational backing.
The repository has zero stars and forks and only one watcher, providing little supporting evidence of community adoption or external review. Popularity is supporting evidence, so this reinforces rather than determines the maintenance concern.
Composer is used for builds, but no security-scanning tooling is present. For a small PHP package this is a modest transparency and maintenance weakness.
The linked repository is not archived, so it remains technically available. However, its last push was in August 2019, which does not compensate for the lack of recent releases.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.