The README is substantial, and the small dependency surface is straightforward. Release and repository activity stopped in November 2018, with no tests or security policy, so maintenance risk is high.
38%
Total Score
100
75
83
Only two releases exist, with the latest published in November 2018 and none in the last 12 months. This long period without releases is substantial abandonment evidence.
The repository has zero stars and forks and only one watcher, providing little evidence of external adoption or community support. Popularity is supporting evidence, but this reinforces the maintenance concern.
Composer is used for builds, but the repository has no security scanning tools. That weakens ongoing maintenance and transparency for a package handling API access.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though not a severe risk by itself.
The latest version remains v0.2, indicating an immature project that never reached a stable major release. Its non-prerelease status offers only limited compensation.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ~6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.