It is small and clearly documented, with a stable version, a focused dependency, and no install-time scripts. The source repository does not mention the package by name, and maintenance evidence is too old to support a dependable long-term dependency.
42%
Total Score
50
100
75
100
The package has only 3 releases, with the latest in March 2017 and none in the last 12 months; this is strong evidence of long-term inactivity.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, reinforcing that the project is not currently maintained.
The repository name does not match the package name and its README does not mention the package, creating uncertainty that the linked source is the package's actual project.
Composer is used for builds, but no security scanning tools are configured; this is a secondary transparency gap rather than a decisive risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
oxid-esales/eshop-doctrine-migration-wrapper Version ^v1.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.