Annotation For ThinkPHP6
42%
Total Score
unhealthy
Risky: one release from 2021 and no recent repository activity leave maintenance uncertain.
This package has only one release, published in August 2021, with no releases in the last five years. That is strong evidence of an immature or abandoned dependency.
There were no commits and no active maintainers in the last three months, consistent with a project that has been inactive for years. This materially raises abandonment risk.
Five runtime dependencies create meaningful maintenance and compatibility exposure for a package that has had only one release. The signal does not show that these dependencies are unsafe, but the surface area increases adoption risk.
The repository has zero stars and forks and only one watcher, providing little evidence of community use or external oversight. Popularity is supporting evidence, so this reinforces rather than determines the risk assessment.
Composer build tooling is present, but no security-scanning tooling was detected. That is a transparency and maintenance gap, though it is less severe than the absence of development activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
erusev/parsedown Version ^1.0 | — | — |
topthink/framework Version ^6.0 | — | — |
doctrine/annotations Version ^1.0 | — | — |
php-di/phpdoc-reader Version ^2.0 | — | — |
symfony/class-loader Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.