Organization backing, repository tests, and release notes provide useful continuity. Recent development has slowed, and both workflow action references are unpinned, so ongoing maintenance and build reproducibility deserve attention.
68%
Total Score
75
100
88
83
The package has been released since October 2020 with 16 releases, but only one release occurred in the last 12 months, indicating a slower recent cadence.
There were no commits and no active maintainers in the last three months, a meaningful sign of slowed maintenance for a dependency.
Composer build tooling is present, but no security-scanning tool was detected; this is a modest repository hygiene gap rather than evidence of abandonment.
Both analyzed workflows have no top-level permissions block and no dangerous audit findings, but all 2 of 2 action references are unpinned, weakening build reproducibility.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laminas/laminas-cache Version ^4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.