The package has a complete README, a clear MIT license, and no install-time scripts. Its organization backing and security policy do not offset the long-term lack of maintenance or the package's withdrawn status.
12%
Total Score
50
56
100
Packagist marks the entire package as abandoned, with no replacement package provided. This directly warns consumers against taking a new dependency on it.
The latest release was over 7 years ago, with no releases in the last 12 months. This is strong evidence of abandonment for a live application package.
The repository had zero commits and zero active maintainers in the last 3 months, consistent with the archived state and indicating no current maintenance capacity.
The linked repository is archived and was last pushed over 7 years ago. An archived source project is a severe abandonment risk for a dependency.
There were no new or closed issues or pull requests in the last month, while 8 issues remain open. This supports the conclusion that the project is inactive.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
neos/flow Version * | — | — |
ttree/script Version ^3.0 | — | — |
cocur/slugify Version ^2.0 | — | — |
ttree/stylesheet Version ^3.0 | — | — |
knplabs/github-api Version ^1.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.