The package is small and focused, with tests, a clear README, and one runtime dependency. Its source remains available and the release is licensed, but ongoing upkeep is not demonstrated.
60%
Total Score
50
100
80
75
Only 3 releases have been published since August 2017, with no release in over two years and a median interval of about 3 years and 3 months; this points to limited maintenance activity.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long release gap and weakening confidence in ongoing support.
There is 1 open issue, with no new or closed issues and no pull-request activity in the last month; this is a small but visible sign of limited project activity.
Composer build tooling is present, but no security scanning tools were detected, so automated vulnerability checks are not evident.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
league/oauth2-client Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.