The release is properly licensed, documented, and backed by a matching organization repository with tests and release notes. No releases have appeared since November 2023, and recent repository activity is absent; the unpinned workflow actions add a smaller maintenance concern.
18%
Total Score
50
100
58
100
Packagist marks the entire package as abandoned and recommends symfony/mime, making continued dependency adoption unsuitable despite the availability of a stable release.
There were no commits and no active maintainers in the three months measured, reinforcing the abandonment concern rather than showing ongoing maintenance.
The linked Laminas repository is archived, which is a severe abandonment signal even though it was pushed in November 2024.
The package has 77 releases and a long history, but no release has been published since November 2023, indicating that maintenance has stopped.
All four workflows were analyzed with no dangerous sinks or audit findings, but all 10 action references are unpinned, leaving avoidable workflow supply-chain hygiene risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laminas/laminas-stdlib Version ^2.7 || ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.