The small codebase has limited consumer documentation and no visible security process. Its maintenance record provides little evidence of ongoing support, so pinning this release carries substantial abandonment risk.
35%
Total Score
0
67
75
Only two releases were published, both in December 2022, with no releases in the last 12 months and the latest release more than three years old. This strongly limits evidence of ongoing maintenance.
The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long period since the last release and raising abandonment risk.
The package has no README, while tests and a changelog are absent; the latter are normal for published artifacts, but missing consumer documentation is a real integration gap for a library.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but this provides no community signal to offset the inactivity.
Composer is used for builds, but no security-scanning tools are present. That weakens supply-chain maintenance hygiene, although it is not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/filesystem Version ^5.4 | — | — |
phpseclib/phpseclib Version ~3.0.17 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.