The package is licensed, documented, tested, and backed by an organization with a matching repository. Its sole release and last repository push were in 2019, leaving current compatibility and maintenance uncertain.
42%
Total Score
83
100
72
88
This package has only one release, 1.0.0, published in May 2019, with no releases in the last 12 months. The long period without a newer release is strong evidence of abandonment risk.
There are no open issues or pull requests and no issue or pull-request activity in the last month. With a repository last updated in 2019, this supports the concern that the project is inactive.
The repository has zero stars, forks, and watchers. This offers no supporting adoption evidence, but popularity is only supporting evidence and does not independently establish that the package is unsafe to depend on.
Composer is used for builds, but no security scanning tools are reported. That is a modest transparency gap, though it is less significant than the project's prolonged inactivity.
The linked repository is not archived, which is a meaningful compensating signal, but its last push was still in July 2019 and does not demonstrate current maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
predis/predis Version ^1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.