It includes a clear README, tests, and an MIT license, with no install-time scripts or registry deprecation. Its single-maintainer project lacks recent activity and security tooling, so pinning this old release carries maintenance risk.
42%
Total Score
25
72
67
This is the package's only release, published about 7 years ago, with no releases in the last 12 months. That strongly indicates limited ongoing maintenance.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long gap since its last push. This is a substantial abandonment concern.
Only one registry account has publish access. The linked repository is user-owned rather than organization-backed, so there is little visible redundancy if that maintainer stops supporting the package.
The repository has 0 stars, 1 fork, and 1 watcher. Low adoption is supporting evidence of limited maturity, though it is not decisive by itself.
Composer is used for builds, but no security-scanning tools are present. For an old package with no recent activity, this leaves maintenance and vulnerability oversight weaker.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version 2.* | — | — |
symfony/yaml Version 2.* | — | — |
symfony/console Version 2.* | — | — |
jdorn/sql-formatter Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.