It has a clear MIT license, README, tests, and a small dependency set. The repository has no security policy and little adoption, so maintenance assurance is limited.
44%
Total Score
25
100
78
50
The latest release was published on March 3, 2018, and there were no releases in the last 12 months. This long release gap is strong evidence of abandonment risk, despite the package not being deprecated.
There were no commits and no active maintainers in the last three months. Combined with the last repository push being in 2021, this indicates a sustained lack of visible maintenance.
One registry publishing account is present. Because the repository is owned by the same individual, this is consistent with a small owner-maintained project rather than evidence of a missing publishing team.
The repository has 6 stars, 3 forks, and no watchers, indicating limited adoption and a small external support signal. Popularity is supporting evidence, so this lowers confidence in ongoing maintenance rather than deciding the verdict alone.
Composer is used for builds, but no security-scanning tool was detected. For a small PHP integration library this is a hygiene gap, not a severe dependency risk by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.3 | — | — |
laravel/framework Version ^5.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.