Lib for providing middleware pipe factory.
42%
Total Score
unhealthy
Risky: no registry releases since 2018 and no recent commit activity.
The package has had no registry releases in more than eight years, despite 26 releases overall. This is a substantial maintenance concern, though the repository remains available and was pushed more recently.
There were no commits and no active maintainers in the last three months, reinforcing the concern raised by the absence of registry releases. The 2023 push shows historical activity but not current upkeep.
A post-create-project-cmd lifecycle script runs during project creation. This is not inherently unsafe, but it adds install-time behavior that consumers should understand before adopting the package.
There were no new or closed issues or pull requests in the last month, with three issues and one pull request still open. This suggests limited recent project responsiveness.
Composer build tooling is present, but no security-scanning tool was detected. That weakens automated maintenance and security hygiene without proving the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
zendframework/zend-stdlib Version ^3.1 | — | — |
rollun-com/rollun-installer Version ^4.0 | — | — |
zendframework/zend-expressive Version ^2.2 | — | — |
zendframework/zend-servicemanager Version ^3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.