A single maintainer limits visible continuity, while the stable version line is a modest positive. The repository could not be found, so maintenance and provenance remain unverified.
43%
Total Score
50
67
The package has only three releases since May 2021, with the latest in July 2022 and none in the past 12 months. That long release gap is a substantial abandonment concern.
Only one registry account has publish access. This creates a thin operational base and increases continuity risk if that maintainer becomes inactive.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.4.5 | — | — |
topthink/framework Version ^6.0 | — | — |
topthink/think-view Version ^1.0 | — | — |
topthink/think-helper Version ^3.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.