The repository includes tests, a changelog, release notes, and a clear MIT license, making the published artifact easier to assess. There is no security policy, adding a smaller transparency concern.
40%
Total Score
25
86
50
The latest release was published about six years and six months ago, with no releases in the last 12 months. This strongly raises abandonment risk despite the package having 16 releases overall.
The repository recorded no commits and no active maintainers in the last three months, consistent with the release gap and indicating that maintenance capacity is currently absent.
There was no issue or pull-request activity in the last month, with one issue still open. This supports the broader evidence of an inactive project.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though not as serious as the maintenance inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/container Version ^1.0 | — | — |
symfony/console Version ^4.3|^5.0 | — | — |
prolic/humus-amqp Version ^2.0 | — | — |
zendframework/zend-mvc Version ^2.7.15 | — | — |
sandrokeil/interop-config Version ^1.0 || ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.