Usable with caveats, but maintenance appears stalled: the last release and repository push were about six years ago, with no recent commits. It is a small, clearly identified package with a README, MIT declaration, and no deprecation or install scripts.
58%
Total Score
25
72
75
There were no commits and no active maintainers in the last three months, consistent with maintenance having stopped about six years ago and creating abandonment risk.
The registry namespace and repository owner match a single individual, providing clear ownership but no organization-level backing to compensate for the inactive maintenance record.
The package has nine releases, but its latest release was about six years ago and it has had no releases in the last 12 months, indicating prolonged inactivity.
The repository has zero stars and forks and only one watcher, providing little evidence of a broad user or contributor community; this is supporting evidence rather than a health verdict by itself.
Composer is used for builds, but no security scanning tools are configured. This is a transparency and maintenance gap, though the absence of scanning alone is not evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nette/caching Version ^3.0 | — | — |
nette/application Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.