The repository is small but has a README, tests, matching source, and a minimal dependency set. Its lack of security scanning and policy adds little protection, while the project shows no recent maintenance.
18%
Total Score
33
100
61
83
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe adoption risk even though the specific release is not separately withdrawn.
The package has only two releases, both in February 2014, and none in the last 12 months. That release history strongly indicates abandonment for a library consumers may need to maintain.
The repository recorded zero commits and zero active maintainers in the last 3 months, and its last push was in August 2016. The repository is not archived, but that does not compensate for the long inactivity.
The package and repository are owned by an individual account rather than an organization. That is not inherently unhealthy, but it provides less visible continuity alongside the inactive project.
There are no open issues or pull requests and no recent issue or pull-request activity. While a clean tracker can be positive, here it is consistent with the absence of active maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.