It includes a README, tests, a stable release, and no install-time scripts. A single maintainer, no security policy, and no automated security scanning leave limited evidence for ongoing support.
58%
Total Score
50
78
83
The latest release was published in March 2022, with no releases in the following four years. This is substantial evidence of slowing or stopped maintenance, although the package is not deprecated or archived.
Only one registry account has publish access. That is a limited publishing base and increases continuity risk when the repository is owned by an individual.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide little evidence of a broad support community.
The project uses Composer build tooling, but no security scanning tools were detected. That reduces transparency around ongoing dependency and code-risk monitoring.
No security policy was found in the repository, leaving no documented process for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~7.4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.