The MIT license, README, and matching repository make the small codebase straightforward to inspect. Its single dependency keeps the maintenance surface limited, but there is little evidence of ongoing care or validation.
42%
Total Score
50
100
72
83
The package has had only two releases, both in August 2015, with no releases in the past 11 years. This is strong evidence of abandonment risk for a dependency that may need compatibility fixes.
There were zero commits and zero active maintainers in the last three months, after the repository stopped changing in 2015. This materially increases abandonment and compatibility risk.
There are two open issues and no issue or pull-request activity in the last month, providing no evidence that reported problems are being handled.
The repository has 8 stars, 1 fork, and 2 watchers. This is limited supporting evidence and suggests a small user base, but popularity alone does not determine health.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are configured. The missing scanning is a modest transparency and maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.