The stable major version, MIT license, small dependency set, and release notes support straightforward use. However, there is no security policy or automated security scanning, increasing the maintenance burden for adopters.
12%
Total Score
0
100
56
50
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe adoption risk because future fixes and support are not signaled.
The package has had no releases in the last five years despite a long history, showing that maintenance has effectively stopped. The 12-release history and prior regular intervals do not compensate for the prolonged current inactivity.
There were zero commits and zero active maintainers in the last three months, consistent with the archived repository and abandoned registry status.
The linked repository is archived and was last pushed in September 2021, indicating the source is no longer actively maintained.
Composer is used for the build, but no security scanning tools are present. This modestly reduces assurance, though it is secondary to the abandonment indicators.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~6.0|~7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.