The focused package has no runtime dependencies, repository tests, and a matching documented source tree. Its stable release and release notes help, but maintenance has stopped for nearly five years and workflow actions are unpinned.
58%
Total Score
50
100
83
67
The package has had no releases in nearly five years, with zero releases in the last 12 months. This is strong evidence of a stagnant project, though the seven-release history shows it was previously maintained.
There were no commits and no active maintainers in the last three months, consistent with the long release gap and indicating that maintenance has effectively stopped.
Only one registry account has publish access. That is a thin publishing base for a user-owned project and leaves limited visible redundancy if the maintainer becomes unavailable.
There is only one open issue and no recent issue or pull-request activity. This is not severe by itself, but it provides no evidence of ongoing project engagement.
The repository uses Composer, but no security scanning tools were detected. For a small PHP package this is a hygiene gap rather than a standalone dependency blocker.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.