The package has a usable README, a small dependency set, and repository tests. Its MIT declaration and matching repository reduce transparency concerns, but ongoing changes and support should not be expected.
12%
Total Score
0
100
50
83
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning against taking a new dependency on it.
The package has only two releases, with the latest in August 2015 and no releases in the last 12 months—roughly 11 years ago. This strongly indicates abandonment.
The repository recorded no commits or active maintainers in the last three months, consistent with its long period without releases. There is no evidence of current development capacity.
The linked repository is archived and was last pushed in December 2015, so the source is no longer maintained. That makes future fixes and compatibility updates unlikely.
The repository has no security policy. This is a transparency gap, although the more decisive concern is that the project is already archived and abandoned.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.