Tests, documentation, release notes, and a clear license make the package straightforward to evaluate. Its small user base and lack of a security policy add modest uncertainty, while the repository remains maintained enough to avoid an abandonment judgment.
65%
Total Score
100
100
83
83
The latest release was published over five years ago, with no releases in the last 12 months. A repository push in 2023 provides some compensating evidence, but release maintenance is still notably stale.
The repository has zero stars and forks and only one watcher, indicating very limited public adoption. Popularity is supporting evidence rather than a health verdict, so this is a modest concern rather than a severe risk.
Composer and Phing provide build tooling, but no security scanning tool is reported. The missing scanner is a hygiene gap, not evidence that the release is unsafe.
The repository has no security policy. For a small library this weakens vulnerability-reporting transparency, though it does not by itself indicate abandonment.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.