The MIT license, matching repository, and concise README make the package straightforward to inspect and integrate. Its tiny codebase has no tests or security policy, so future compatibility and maintenance coverage are limited.
45%
Total Score
0
67
50
Only two releases appeared, both on January 10, 2024, with no release in the following 986 days. That strongly raises abandonment and compatibility risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating no observed current maintenance.
The repository has zero stars and forks and only one watcher, providing little supporting evidence of external use or review. Low popularity alone is not disqualifying, but it offers no compensation for the maintenance gap.
Composer is used for the build, but no security scanning tool is present. The missing scanning is a modest transparency and maintenance concern rather than evidence that the package is unsafe.
The repository has no security policy, leaving the process for reporting and handling vulnerabilities undocumented. This matters for a dependency but is less severe than the observed maintenance stoppage.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
workerman/workerman Version >=4.0.20 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.