Projeto que busca os cursos da Alura
38%
Total Score
0
100
58
100
Only one release exists, published about 4 years ago, with no releases in the last 12 months. This strongly suggests the package is inactive rather than actively maintained.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the package's long release gap and increasing abandonment risk.
The package declares a proprietary license, while the listed license files are primarily under vendored dependencies. It is licensed, but proprietary terms can restrict reuse and make it a poor fit for an open-source dependency.
A README and changelog are present, but the README excerpt describes Guzzle rather than this package, reducing consumer transparency. The absence of published tests is normal packaging practice and is not a concern by itself.
The repository name does not match the package name, and no README mention was found. Although name differences can occur in subpackages, this leaves the package-to-source relationship unclear here.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.4 | — | — |
symfony/dom-crawler Version ^4.2 | — | — |
symfony/css-selector Version ^5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.