The published artifact is compact and easy to inspect, with straightforward Composer dependencies and no install-time scripts. Its only release activity ended in August 2018, so maintenance and compatibility with current projects are uncertain.
52%
Total Score
100
63
83
The package has only two releases, both completed by August 2018, with no releases in the last 12 months. This is the strongest evidence of long-term maintenance risk.
The repository has zero stars and forks and four watchers. Popularity is only supporting evidence, but these low engagement figures provide no meaningful maintenance confidence.
Composer is used as the build tool, but no security scanning tooling is reported. The missing scanning is a modest hygiene gap and does not outweigh the clearer maintenance evidence.
The repository is not archived, which avoids an explicit abandonment signal, but it was last pushed in August 2018 and therefore does not offset the inactive release history.
No repository security policy is present. For this small library that is a transparency gap, though it is less significant than the long absence of releases.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
league/iso3166 Version ^2.1 | — | — |
lstrojny/functional-php Version ^1.8 | — | — |
zendframework/zend-form Version ^2.12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.