Its small dependency surface, clear README, tests, and release notes make the package straightforward to evaluate. The package is abandoned and marked deprecated, so pinning this release creates substantial maintenance risk.
15%
Total Score
0
100
57
83
Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption and maintenance warning.
The package has 17 releases since 2014, but none in the last 12 months; the latest release was nearly three years ago. This supports the abandonment concern despite its earlier release cadence.
There were no commits and no active maintainers in the last three months. This is consistent with the archived repository and materially lowers confidence in ongoing maintenance.
The linked repository is archived, and its last push was nearly three years ago. Archived source is a severe abandonment risk for a dependency.
The repository has no security policy. That weakens vulnerability-reporting transparency, although it is secondary to the package's abandonment status.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzle/guzzle Version 3.8.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.