The README and comprehensive test suite make integration and maintenance easier to inspect. Its limited dependency set is helpful, but the lack of a security policy leaves no documented reporting path.
38%
Total Score
25
60
50
No license is declared, and no license file was detected in the package or repository. This creates a material legal and adoption risk for downstream users.
The latest release was published in June 2014, with no releases in the last 12 months. This long period without version updates is strong evidence of abandonment risk.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the package's long release gap. This substantially lowers confidence in ongoing maintenance.
There were no new or closed issues or pull requests in the last month, while 6 issues and 3 pull requests remain open. This suggests unresolved maintenance activity rather than an actively managed project.
The repository has no security policy or documented reporting path. This is a transparency gap, although it is less severe than the prolonged lack of maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
raven/raven Version ~0.9.0 | — | — |
guzzlehttp/guzzle Version ~4.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.