The package has had no release or repository commit activity for about 9 years, leaving compatibility and maintenance uncertain. Its README, license, small dependency set, and matching source repository provide useful transparency, but they do not offset the abandonment risk.
38%
Total Score
50
100
72
88
The latest release was published about 9 years ago, with no releases in the last 12 months; only three releases exist overall. This is strong evidence of stalled maintenance for a framework integration.
The repository recorded zero commits and zero active maintainers during the last 3 months, and its last push was about 9 years ago. No provided activity signal compensates for this maintenance gap.
There are no new or closed issues in the last month and no merged pull requests, with one pull request still open. This reinforces the absence of current project activity.
The repository has 7 stars and 4 forks, indicating a small user and contributor footprint. Popularity is supporting evidence only, but the limited adoption adds little resilience to the long inactivity.
Composer is used as the build tool, providing basic ecosystem-standard packaging. No security scanning tools are configured, a minor transparency and hygiene gap for a package that has been inactive for years.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/lumen-framework Version >=5.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.