The package is clearly documented and includes a changelog, release notes, and a matching source repository. Its small community and no commits or releases in the past year raise maintenance risk; the repository is not archived and organization backing is a modest counterweight.
62%
Total Score
83
50
83
75
Eight runtime dependencies, including multiple provider clients, create a relatively broad maintenance surface for this small package, though the signal does not show known problematic dependencies.
The package has six releases over about two years, but none in the last 12 months, indicating that maintenance has slowed substantially.
There were no commits and no active maintainers in the last three months, consistent with an inactive project and increasing abandonment risk.
The repository has only two stars, one fork, and no watchers, providing little community evidence to compensate for the lack of recent maintenance.
Composer is used for builds, but no security scanning tools are present, leaving a modest repository hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ghasedak/php Version ^1.0 | — | — |
kavenegar/php Version ^1.2 | — | — |
samuraee/easycurl Version ^1.0 | — | — |
illuminate/support Version >=5.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.