The package has a minimal six-file artifact and no tests or security scanning, limiting confidence in changes. Its stable version and organization ownership do not offset the lack of any release or commit activity since 2015.
8%
Total Score
50
100
44
83
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe adoption risk because future maintenance and support are not expected.
This package has only one release, published about 11 years ago, with no releases in the last 12 months. That strongly indicates abandonment for a dependency intended for ongoing use.
The repository recorded no commits and no active maintainers in the last three months, consistent with its long-term inactivity. There is no observed maintenance activity to offset the age of the release.
The linked repository is archived and was last pushed about 11 years ago, indicating the source is no longer maintained. Organization ownership does not compensate for the archived state.
No license declaration or license file was detected in the package or repository. This creates a material legal and transparency gap for adoption.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.