The six-file package has a readable README, no install scripts, and only two runtime dependencies. It is not deprecated or archived, but there is no security scanning or security policy.
38%
Total Score
0
67
75
The latest release was published in April 2013, and there have been no releases in over 13 years. That leaves substantial abandonment risk despite the package having 11 releases overall.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the repository's last push in April 2013. No newer activity is provided to offset this long inactivity.
The package declares LGPL-3.0+ and includes a license file, but the detected artifact license is GPL-3.0. The conflicting licensing evidence needs clarification before adoption.
Composer is used for the build, which is appropriate, but no security scanning tools are configured. The absence of scanning is a modest maintenance and transparency gap.
The linked repository has no security policy. For a package that contains executable PHP helpers, this reduces transparency for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
openlss/lib-tpl Version ~0.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.