Its small scope and simple Composer setup limit operational complexity. The package has little evidence of ongoing maintenance or mature documentation, so pinning this old release carries meaningful abandonment risk.
40%
Total Score
100
63
67
Only two releases were published, both in November 2018, with no releases in the last 12 months. That long period without a release is strong evidence of abandonment risk.
The complete project contains only five files, including one source file and no test or documentation structure beyond a short README. This may fit a small package, but provides little evidence of maturity or maintainability.
The package includes a README, but it explicitly says documentation is a work in progress and the project has no tests or changelog. Missing tests and changelog are normal in published artifacts, while the limited consumer documentation remains a concern.
The repository has zero stars and forks and one watcher. Popularity is not required for health, but these counters provide no supporting evidence of adoption or community oversight.
Composer is used for the build, which fits the package ecosystem, but no security scanning tooling is present. The missing scanner is a hygiene gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nesbot/carbon Version ^1.0|^2.0 | — | — |
monolog/monolog Version ^1.24 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.