Its tiny user base and absent security policy provide little support for long-term maintenance. Tests, documentation, and an MIT license help, but future compatibility work may fall to adopters.
38%
Total Score
0
67
50
Only two releases exist, with none in the last 12 months; the latest was published about 8 years ago. This strongly suggests the package is no longer actively maintained.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the release history and increasing abandonment risk.
The repository has 1 star, 0 forks, and 1 watcher, so there is little visible community activity to compensate for the lack of recent maintenance.
No security policy was found, leaving vulnerability-reporting and response expectations undocumented. The small, inactive project provides no stronger evidence to offset this gap.
The latest release is v0.2 and is not a stable major version, which indicates limited maturity even though it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^1.0 | — | — |
monolog/monolog Version ^1.0 | — | — |
guzzlehttp/guzzle Version ^6.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.