The small codebase has no tests or security policy, and its README is the main consumer documentation. The organization-backed repository is intact, but there is no evidence of recent maintenance.
42%
Total Score
50
100
69
75
The latest release was published in April 2019, and there have been no releases in over seven years. That leaves compatibility and maintenance concerns unresolved for a package intended as an API client.
The repository recorded zero commits and zero active maintainers in the past three months, consistent with the long release gap. This is strong evidence that the project is no longer actively maintained.
The artifact includes a README, which provides basic installation and usage guidance. No tests or changelog are present, but their absence in a published PHP artifact is normal; the repository also reports no tests.
The repository has zero stars and forks and only two watchers. Popularity is supporting evidence rather than a verdict, but these values provide no independent sign of active community use.
Composer is used for builds, which is appropriate, but no security scanning tools are configured. That provides little additional assurance for dependency or source changes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.