The MIT license, focused dependency set, and matching organization-backed repository make the package easy to inspect. Its simple artifact has no tests or security policy, while the lack of follow-up releases leaves maintenance confidence low.
42%
Total Score
100
71
83
This is the only release, published in June 2020, with no releases in more than six years. That strongly indicates abandonment risk despite the repository remaining available.
The repository has zero stars and one fork, providing little supporting evidence of community adoption or external review. Low popularity alone is not decisive for a small focused package.
The repository uses Composer and Make, showing basic build structure, but it has no security scanning tooling. That is a modest repository-hygiene gap alongside the stale release history.
No security policy is present in the repository. This limits disclosure transparency, though it is less significant than the package's long inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/http-client-contracts Version ^2.1-dev | — | — |
zoilomora/elastic-apm-agent-php Version ^0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.