phpdot/scheduler appears structurally coherent and transparently backed: it has an MIT license, a matching organization-owned repository, a substantial README, a complete-looking source tree, repository tests, no install-time lifecycle scripts, and no deprecation or archival status. However, this is a newly published v0.3.0 release with only one release and no recorded commits or active maintainers in the measured three-month window, so maintenance maturity and continuity are unproven. The absence of repository security scanning and a security policy adds a smaller transparency gap, while the single registry maintainer is less concerning because the repository is organization-owned. It is potentially usable, but adoption should account for its very limited track record and early-stage maintenance evidence.
68%
Total Score
75
100
78
90
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/clock Version ^1.0 | — | — |
phpdot/console Version ^0.3 | — | — |
phpdot/database Version ^0.3 | — | — |
symfony/console Version ^8.0 | — | — |
symfony/process Version ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.