The license, release notes, README, and security policy provide useful project documentation. Registry releases have stopped and repository activity is currently quiet, while workflow dependencies are all unpinned.
62%
Total Score
67
88
75
The package has 11 releases since April 2019, but none in the last 12 months; its latest registry release was in November 2024. This is meaningful evidence of slowing maintenance, despite a long release history.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with no registry releases in the last 12 months, this raises abandonment risk.
There were no new or closed issues and no new or merged pull requests in the last month, despite 8 open issues and 11 open pull requests. This suggests limited current maintenance activity.
Composer build tooling is present and security scanning tools were not detected. The missing security scanner is a modest repository-hygiene gap, partly offset by the separately documented security policy.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, all 3 action references are unpinned, which weakens build reproducibility and supply-chain hygiene.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
ramsey/uuid Version ^3.5 | — | — |
octoper/cuzzle Version ^3.0 | — | — |
rdlowrey/auryn Version ^1.4 | — | — |
monolog/monolog Version ^1.21 | — | — |
symfony/console Version ^5.3.16 || ^6.0.19 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.