The repository has tests and a clear MIT license, but maintenance appears to have stopped years ago. There is no recent commit or release activity, and the project has no security policy or automated security scanning.
44%
Total Score
25
75
75
The latest release was about 9 years ago, with no releases in the last 12 months; this is strong evidence that the package is no longer actively maintained.
There were no commits or active maintainers in the last 3 months; together with the old last push, this indicates a long-standing maintenance gap.
There are no open issues or pull requests and no recent issue activity, which is neutral rather than evidence that the package is actively maintained.
Composer is used for the build, but no security scanning tools are configured, leaving dependency and code checks less transparent.
The repository is not archived, but its last push was about 8 years ago, reinforcing the separate evidence that active maintenance has stopped.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~6.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.