The repository includes tests and uses Composer, Make, and Phing, giving the small codebase some structure. Composer install and update hooks add operational risk, while no security scanning or policy is documented.
39%
Total Score
25
60
50
The package has had no releases in the last 12 months, and its latest release was in September 2019 despite a history of 20 releases. This long period without registry updates is strong abandonment evidence.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's prolonged release inactivity and leaving no evidence of current maintenance.
The package runs post-install and post-update Composer scripts, which increase installation-time behavior and maintenance risk. No provided signal shows these hooks are unnecessary or independently constrained.
There were no new or closed issues or pull requests in the last month, with one issue still open. This provides no sign of active support or issue resolution.
The repository has zero stars and forks and only one watcher. Popularity is not decisive for a small package, but these counters provide little supporting evidence of adoption or community resilience.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.