There is no license, security policy, or documented consumer guidance, which makes adoption and redistribution harder. The package is small and uses only two runtime dependencies, but that does not offset the maintenance concerns.
35%
Total Score
0
100
64
75
The package has had only five releases, all concentrated on one day in October 2020, with no releases in the last 12 months. This strongly suggests the release line is no longer maintained.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and creating a substantial abandonment risk.
Neither the registry metadata, package artifact, nor repository contains a recognized license declaration or license file. This creates a real legal and reuse barrier for dependents.
The published artifact has no README, and no repository README or release notes were observed, leaving consumers without documented usage guidance. Missing tests and changelog files in a published PHP artifact are not material concerns on their own.
The repository has zero stars and forks and only one watcher, providing little evidence of external adoption or review. Popularity is supporting evidence, so this reinforces rather than determines the maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laminas/laminas-http Version 2.* | — | — |
laminas/laminas-servicemanager Version 3.4.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.