The package has a usable README, an MIT declaration, and no install-time scripts. Its small source tree, one open issue, and absent security policy leave little additional evidence of project support.
38%
Total Score
33
70
75
The latest release was published about nine years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a package used as an application dependency.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the long release gap and indicating no observed maintenance capacity.
The registry lists one maintainer. A single maintainer is not inherently unhealthy for a small package, but it provides limited resilience when repository activity is absent.
There was no issue or pull request activity in the last month, while one issue remains open. This adds a smaller maintenance concern alongside the broader inactivity evidence.
The repository uses Composer build tooling, but no security scanning tools were detected. The missing scanning is a modest hygiene gap, not evidence of abandonment by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~5.3|~6.0 | — | — |
facebook/graph-sdk Version ^5.0 | — | — |
sammyk/laravel-facebook-sdk Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.