The package has no README and no tests, making integration and verification harder. Its small, user-owned project has no security policy, though it is not archived and includes a changelog.
38%
Total Score
0
50
50
This is the only release, published about 11 years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk for a dependency.
The repository had no commits or active maintainers in the last 3 months, and its latest push was about 6 years ago. The repository is not archived, but that does not offset the stale activity.
The package includes a changelog and a corresponding GitHub release, but it has no README and no tests. Missing consumer documentation and verification are meaningful gaps for a library.
The linked repository has no security policy, leaving vulnerability-reporting expectations unclear. This is a transparency gap, though not evidence of malicious behavior.
The assessed version is still a beta and the package has no stable major release. This increases compatibility and maintenance uncertainty.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzle/guzzle Version ~3.9.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.