Source activity stopped in November 2019, and the repository has no security scanning. The package still includes tests, documentation, and a matching Apache-2.0 license, with no install-time scripts.
52%
Total Score
75
86
100
The package has 34 releases, but none in over 9 years; the long period without a release materially raises abandonment and compatibility risk.
There were no commits or active maintainers in the last 3 months, consistent with the repository's last push being in November 2019 and indicating inactive maintenance.
Composer is used for the build, but no security scanning tool was detected, leaving a maintenance and vulnerability-monitoring gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
open-orchestra/open-orchestra-mongo-libs Version self.version | — | — |
open-orchestra/open-orchestra-base-api-bundle Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.