The release is licensed, documented, and backed by repository tests and a changelog. It is abandoned and deprecated, so use laminas/laminas-feed instead of taking a dependency on this release.
10%
Total Score
0
50
75
Packagist marks the entire package as abandoned, which is a direct warning against adopting it. No replacement package is declared in the registry metadata.
Version 1.0.0 was the only release, published about 5 years ago, with no releases in the last 12 months. That is consistent with a discontinued package rather than an actively maintained dependency.
The repository recorded no commits and no active maintainers in the last 3 months. The archived status provides context that this is a persistent lack of maintenance, not merely a quiet period.
The linked repository is archived and was last pushed about 5 years ago, indicating that maintenance has stopped. This strongly increases abandonment and compatibility risk.
The repository uses Composer for builds, but no security-scanning tools were detected. That is a modest transparency gap, though the package's abandonment is the substantially larger concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zendframework/zend-stdlib Version ^3.2.1 | — | — |
zendframework/zend-escaper Version ^2.5.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.