The package includes a README, tests, a stable version, and a matching source repository. Its registry listing is deprecated, the repository is archived, and no releases or commits have appeared for more than eight years, making this a poor foundation for new projects.
10%
Total Score
0
50
75
Packagist marks the entire package as abandoned, with no replacement specified. This is a direct warning against taking a new dependency on the package.
The package has only three releases, all ending in July 2018, and none in the last 12 months. More than eight years without a release indicates severe abandonment risk despite the earlier regular cadence.
The repository recorded zero commits and zero active maintainers in the last three months. Together with its archived state, this provides no evidence of ongoing maintenance.
The linked source repository is archived, which indicates the project is no longer actively maintained. Its last push was more than four years ago, with no newer maintenance evidence provided.
Composer is used as the build tool, showing basic project tooling, but no security scanning tools are configured. This is a minor hygiene gap that does not outweigh the abandonment evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^1.0 | — | — |
monolog/monolog Version ~1.0 | — | — |
symfony/console Version 3.* | — | — |
psr/http-message Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.