Documentation, tests, release notes, and a matching repository provide useful transparency. However, the project has had no release or commit activity for nearly 12 years, with no security scanning or published security policy.
35%
Total Score
25
79
75
The latest release was in December 2014, and there have been no releases in the last 12 months. This is strong evidence of abandonment for a package intended as a maintained application dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's nearly 12-year release gap. The repository is not archived, but that does not offset the lack of observed maintenance.
Three issues remain open, with no issues or pull requests opened or closed in the last month. This indicates unresolved maintenance demand without recent project response.
Composer build tooling is present, but no security scanning tools were detected. For a package exposing a REST API and relying on 15 runtime dependencies, this is a meaningful maintenance gap.
The repository has no security policy. That reduces transparency about how consumers should report and receive fixes for security concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
opine/db Version ~2.0 | — | — |
opine/build Version ~2.0 | — | — |
opine/cache Version ~2.0 | — | — |
opine/queue Version ~2.0 | — | — |
opine/route Version ~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.