The repository is licensed, tested, and clearly linked to this package. Its build metadata is organized, but those strengths do not offset the release’s withdrawn status and prolonged inactivity.
18%
Total Score
50
69
83
Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption risk even though the repository itself is not archived.
The latest release was in January 2017, and there were no releases in the last 12 months. That long gap indicates substantial abandonment risk for a dependency.
The repository had zero commits and zero active maintainers in the three months before collection. This confirms that current maintenance capacity is absent.
The project uses Composer and build tools, showing an established build process, but no security-scanning tools were detected. This is a secondary hygiene gap rather than the main adoption blocker.
No security policy was found in the linked repository, leaving vulnerability-reporting expectations unclear. The package’s abandonment status makes this gap more consequential.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/console Version ^2|^3 | — | — |
phpunit/php-timer Version ^1 | — | — |
evenement/evenement Version ^2 | — | — |
peridot-php/peridot-scope Version ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.