The license, README, and stable release format make the package straightforward to evaluate and integrate. Its single release and unchanged repository since 2017 leave maintenance and compatibility risks unresolved. No security policy and negligible repository adoption add further concern.
38%
Total Score
100
100
72
50
This package has only one release, published in 2017, with no releases in the last 12 months. That long period without a new release is strong evidence of abandonment risk.
The repository has zero stars and forks and only two watchers. Popularity is not decisive, but this provides little supporting evidence of community use or review.
Composer is used for the build, which fits the package ecosystem. No security scanning tools are present, leaving a modest transparency and maintenance gap.
The repository is not archived, but its last push was in 2017, matching the package's only release. The absence of archival status is mildly reassuring, while the stale repository still lowers confidence in ongoing support.
The repository has no security policy. That is a transparency gap for a package handling API credentials and subscriber data, although it is not evidence of malicious behavior.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
neos/flow Version ^4.0 | — | — |
campaignmonitor/createsend-php Version ~5.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.