VV Entity
38%
Total Score
unhealthy
Risky: more than four years without maintenance and only one early release leave high abandonment risk.
This package has had only one release, published more than four years ago, with no releases in the last 12 months. That is strong evidence of abandonment risk.
The repository has had no commits and no active maintainers in the last three months, while its last push was more than four years ago. This confirms the release history reflects a stalled project rather than a stable active maintenance cycle.
The artifact includes a README, but it is only 15 characters long and says “Coming soon...”; there are no tests, changelog, or release notes. The missing tests and changelog are normal packaging practice, but the inadequate consumer documentation is a real transparency gap.
Composer build tooling is present, but no security scanning tooling is configured. This is a modest hygiene gap that adds concern alongside the project's long inactivity.
The linked repository has no security policy. For a package intended to be integrated into applications, this reduces transparency about vulnerability reporting and maintenance responsibilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpvv/db Version ^0.3.0 | — | — |
phpvv/runtime Version ^0.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.