Healthy and suitable to use, with some maintenance caveats. It has frequent recent releases, an active non-archived repository, and organizational backing, but recent work is concentrated in one contributor and the project lacks a security policy.
78%
Total Score
63
89
67
All three recent commits came from one contributor, leaving a narrow practical maintainer base. Organizational ownership provides some handoff capacity, but no second active contributor is shown.
The repository recorded three commits in the last three months, so activity has not stopped. The volume is modest relative to the frequent registry release history.
There was one new issue and one new pull request in the last month, but none were closed or merged. This shows some activity, although follow-through is limited in the observed period.
The repository has zero stars and forks and only three watchers. Popularity is supporting evidence rather than a verdict, but these counts provide little independent evidence of broad community support.
The project uses Composer build tooling, which supports reproducible package construction. No repository security-scanning tool was detected, leaving a modest transparency gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
odan/session Version ^6.0 | — | — |
php-di/php-di Version ^7.0 | — | — |
psr/container Version ^1.1 | — | — |
guzzlehttp/psr7 Version ^1.9.1 || ^2.5.1 | — | — |
monolog/monolog Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.