The source includes tests, a changelog, and a stable v1.0.0 artifact, while the repository is not archived. Organization backing helps, but this release is a poor long-term dependency choice.
38%
Total Score
50
67
50
This package has had only one release, published about 2 years and 11 months ago, with no releases in the last 12 months. That strongly suggests abandonment risk.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and limited evidence of ongoing maintenance.
The repository has zero stars, forks, and watchers, providing no supporting evidence of community adoption or external visibility. Popularity is only supporting evidence, so this is a secondary concern.
Composer build tooling is present, but no security scanning tools were detected. This is a moderate maintenance and assurance gap, though it does not outweigh the stronger inactivity evidence.
The repository has no security policy, reducing transparency about vulnerability reporting and response for a package that handles error data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/mime Version ^5.2|^6.0 | — | — |
nesbot/carbon Version ^2.62.1 | — | — |
symfony/process Version ^5.2|^6.0 | — | — |
symfony/var-dumper Version ^5.2|^6.0 | — | — |
quantaforge/pipeline Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.