The package has a small dependency surface and a clear MIT license, but its source has had no commits for nearly six years and lacks a security policy. The repository is not archived or deprecated, though its negligible activity and popularity make future support uncertain.
42%
Total Score
50
100
64
50
The package has only 3 releases, with none in the last 12 months; its latest release was published nearly six years ago. This is strong evidence of abandonment risk, although the stable major version reduces release-churn concerns.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long gap since its last push. This materially lowers confidence in ongoing maintenance.
The repository has 0 stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no additional community or support signal alongside the absent recent activity.
Composer is used for the build, which fits the package ecosystem, but no security scanning tools are present. This is a modest transparency and maintenance gap rather than a standalone severe risk.
The linked repository is not archived, but it was last pushed nearly six years ago. Its active status therefore provides little reassurance against abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
socialiteproviders/manager Version ~2.0 || ~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.