The package is licensed, documented, and has no install-time scripts. Its 14 runtime dependencies increase upgrade coupling, while the small repository offers little evidence of resilience.
56%
Total Score
75
50
83
75
The package declares 14 runtime dependencies and no development dependencies, creating meaningful upgrade and compatibility coupling for a small module. The dependencies are declared rather than hidden, which provides some transparency but does not remove the maintenance burden.
The latest release was published on January 8, 2023, with no releases in roughly three years and eight months. The package has 16 releases overall, but the prolonged gap materially raises abandonment and compatibility risk.
There were zero commits and zero active maintainers in the last three months. Combined with the old last push and release, this is evidence of currently inactive maintenance.
The repository has one star, zero forks, and one watcher, indicating a very small user and contributor footprint. Popularity is only supporting evidence, but this leaves little visible community backup if maintenance stops.
Composer is used as the build tool, but no security scanning tools are configured. The missing scanning is a hygiene gap rather than a standalone severe risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laminas/laminas-mvc Version * | — | — |
laminas/laminas-form Version * | — | — |
laminas/laminas-i18n Version * | — | — |
laminas/laminas-cache Version * | — | — |
laminas/laminas-router Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.