The small dependency surface and included test suite make the package straightforward to evaluate. Its stable release and organization-backed repository help, but the lack of activity for over four years and missing security policy leave maintenance risk.
58%
Total Score
50
100
78
83
There were no commits and no active maintainers in the last three months, with the repository last pushed in February 2022. This is the strongest evidence of abandonment risk.
The package has made no release in over four years, despite a prior history of 14 releases. This is a meaningful maintenance concern for a library dependency.
The repository has zero stars and forks and one watcher. This is weak supporting evidence and reinforces that the project has little visible adoption, though popularity alone is not decisive.
The repository uses Composer build tooling, which fits the package ecosystem, but no security scanning tools were detected. The missing scanning is a modest transparency gap.
The linked repository is not archived, but it was last pushed in February 2022, consistent with the long release hiatus.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.