The README explains installation and use, and the package is MIT-licensed. However, it has had no release or commit activity since June 2020, with no security scanning or policy, making ongoing maintenance and compatibility uncertain.
40%
Total Score
0
60
50
The latest release was in June 2020, and there have been no releases in the last 12 months despite the package being over six years old. This strongly increases abandonment and compatibility risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. The repository is not archived, but there is no observed recent maintenance to compensate.
The repository has zero stars, forks, and watchers, providing no supporting evidence of a wider user or maintainer community. Popularity is only supporting evidence, so this reinforces rather than determines the maintenance concern.
Composer is used for the build, which is appropriate, but no security scanning tools are configured. For a package handling database migrations, this leaves an avoidable transparency and review gap.
The repository has no security policy. This is a maintenance and disclosure-process gap, though it is less significant than the absence of recent releases and commits.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/finder Version ^3.0 | — | — |
league/flysystem Version ^1.0.8 | — | — |
illuminate/console Version 5.2.* | — | — |
illuminate/support Version 5.2.* | — | — |
smi2/phpclickhouse Version ^1.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.