The package is small, clearly identified, licensed, and has no install-time scripts. Its documentation is minimal and there are no tests or security-policy guidance, while the single-contributor base leaves limited maintenance redundancy.
55%
Total Score
50
100
63
83
Only three releases exist, with the latest published in April 2015 and none in the past 12 months. This long registry gap is a substantial maintenance concern despite the repository showing recent activity.
A README is present, but its 802 characters mainly say “Coming Soon,” providing little integration guidance. Missing tests and changelog files are normal packaging practice and are not treated as gaps.
The repository is owned by the individual account Lansoweb, not an organization, so the concentrated maintainer activity is not compensated by visible organizational backing.
All recent commits come from one contributor, so maintenance depends entirely on a single person. The repository owner is an individual rather than an organization, providing no visible handoff capacity.
One commit was recorded in the last three months from one active maintainer, showing some current activity but not a sustained maintenance cadence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
zendframework/zendframework Version >=2.3.2,<3.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.