There is no security policy or repository security scanning, leaving maintenance processes less transparent. The package includes a README, tests, changelog, MIT licensing, and no install-time scripts.
58%
Total Score
67
100
83
75
The package has 73 releases, but none in the last 12 months; its latest release was nearly three years ago. This is a meaningful maintenance concern despite the long release history.
The repository recorded 0 commits and 0 active maintainers in the last three months, indicating no recent development activity. The repository is not archived, but that does not offset the current inactivity.
There are 20 open issues, with no new or closed issues and no pull-request activity in the last month. This suggests limited ongoing issue management.
Composer and Phing are used for builds, which supports repeatable project maintenance, but no security scanning tools were detected. The build support partly compensates for the missing security controls.
The repository has no security policy, so there is no documented process for reporting and handling vulnerabilities. This lowers transparency but is not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
dompdf/dompdf Version v0.7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.