The package is small and clearly packaged, with a matching repository and a documented 1.0.1 release. Maintenance has stalled for about eight months, and the repository has no security policy or scanning, so long-term support is uncertain.
58%
Total Score
0
100
86
75
The repository recorded zero commits and zero active maintainers in the last three months, and its last push was about eight months ago. That inactivity is the clearest evidence of elevated abandonment risk.
The package has only two releases, both published within a few hours on January 21, 2026, with no newer release over the following eight months. This indicates limited release maturity and a possible pause in development.
Composer is used for the build, but no security scanning tools are configured. This is a modest transparency and maintenance concern, not evidence that the package is unsafe.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. For a small client library this is a limited but real project-maturity gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
resoul/php-cache Version ^1.0 | — | — |
symfony/http-client Version ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.