40%
Total Score
unhealthy
Risky: no release in about 11 years, with no evidence of recent project activity.
The latest release was published in September 2015, and there have been no releases in the last 12 months. About 11 years without a release is strong evidence of abandonment risk, despite the package having three historical releases.
The repository has zero stars and zero forks, with three watchers. Low popularity is supporting evidence of limited adoption, but it is not decisive for a small package.
Composer is used as a build tool, which fits the package ecosystem. No security scanning tooling is present, leaving a minor transparency gap, though this is less important than the lack of recent maintenance.
The repository has no security policy. This is a modest transparency gap, especially for a package that may run during installation, but it is not severe on its own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version 1.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.