The package is clearly licensed, documented, tested, and has no runtime dependencies. Its small, focused codebase may be easy to inspect, but it offers no credible path for ongoing maintenance or support.
8%
Total Score
25
100
50
100
Packagist marks the entire package as abandoned, with no replacement specified. This is a direct warning against taking a new dependency on it.
The last release was in August 2015, roughly 11 years ago, and there have been no releases in the last 12 months. The long gap indicates the package is no longer maintained.
The repository has recorded no commits and no active maintainers in the last three months, consistent with its archived state and lack of ongoing support.
The source repository is archived, so normal maintenance and issue handling are no longer expected. This is severe abandonment evidence.
One individual has registry publishing access. A single maintainer is a limited support base, and no organizational backing is shown to compensate for that concentration.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.