Clear documentation, tests, and licensing make the package easier to evaluate. Its single maintainer and absent security policy add little confidence for a long-lived dependency.
43%
Total Score
50
80
50
Only one registry publishing account is listed, leaving a thin publishing base. The repository is user-owned rather than organization-backed, so there is no provided evidence of broader institutional support.
The latest release was published about 9 years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a library dependency, despite five historical releases.
There were no new or closed issues and no pull-request activity in the last month, while 19 issues remain open. This indicates little current maintenance or issue resolution.
The repository is not archived, but it was last pushed about 9 years ago. The active status provides limited compensation for the long period without visible repository updates.
The repository has no security policy. This does not prove a security problem, but it reduces transparency and gives consumers no documented reporting path.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
alcaeus/mongo-php-adapter Version 1.0.9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.