It has an MIT license, a substantial README, tests, release notes, and a small runtime dependency set. Those strengths do not make up for the package's lack of current maintenance.
12%
Total Score
0
100
50
50
Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption risk because the release is no longer presented as a maintained dependency.
The package has 74 releases since 2017, but none in the last 12 months and its latest release was in February 2019. The long period without releases strongly indicates that current fixes and compatibility work are unlikely.
The repository recorded zero commits and zero active maintainers in the last three months. This confirms there is no current development activity to offset the old release history.
The linked repository is archived and was last pushed in February 2019. An archived source project is not actively maintained and creates substantial abandonment risk.
The repository has no security policy. That is a transparency and vulnerability-reporting gap, although the archived and abandoned status already carries the primary health impact.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
craftcms/cms Version ~3.0.0 | — | — |
symfony/yaml Version ^3.0 || ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.