Load and retrieve dotenv and YAML environment configuration.
20%
Total Score
75
75
75
Packagist marks the entire package as abandoned and names mykemeynell/env as the replacement, making this release unsuitable for a new dependency despite other healthy project signals.
The repository is owned by an individual account rather than an organization, so the single-contributor concentration has no visible organizational handoff support.
The package is mature but has only five releases since 2016, with one release in the last 12 months; the recent release is positive, but the overall cadence is sparse.
One contributor made all seven commits in the last three months, so maintenance depends entirely on a single active person.
The project uses Composer, but no security-scanning tools were detected, leaving its security checks less transparent.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/yaml Version ^7.4.12 || ^8.0.12 | — | — |
vlucas/phpdotenv Version ^5.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.