There is no license information, and the source repository does not clearly identify this package. Its single release is also almost eight years old, leaving little evidence of ongoing support.
12%
Total Score
33
Packagist marks the entire package as abandoned, with no replacement identified. Package-level deprecation is a severe adoption and maintenance warning.
This package has only one release, published almost eight years ago, with no releases in the last 12 months. That provides no evidence of active maintenance.
The linked repository is archived and was last pushed in November 2018. Archived source is a severe abandonment risk for a dependency.
Neither the package nor the linked repository declares or contains a detectable license. Developers cannot establish clear reuse terms from the available release materials.
The repository name does not match the package name and its README does not mention the package. This weakens confidence that the linked source clearly belongs to this package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^5.3 | — | — |
composer/installers Version ^1.6 | — | — |
adbario/php-dot-notation Version ^2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.