It includes automated tests, a readable package tree, and no install-time scripts. The stable release is not deprecated, but limited adoption and the absent security policy reduce confidence in long-term support.
57%
Total Score
50
100
75
88
No license is declared and no license file was detected in the package or repository. This creates a material legal and transparency concern for dependency use.
Only two releases were published, with the latest in July 2023 and none in over three years. This indicates limited maintenance activity and raises abandonment risk.
There were no commits and no active maintainers in the last three months. Combined with the last push being in July 2023, this is a strong sign of stalled maintenance.
The repository has zero stars and forks and only one watcher. Popularity is not decisive, but these figures provide little supporting evidence of an active user or contributor community.
The project uses Make and Composer, but no security scanning tools were detected. The missing scanning is a modest hygiene gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.4 | — | — |
symfony/dom-crawler Version ^6.0 | — | — |
symfony/css-selector Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.