Documentation, tests, licensing, and a matching source repository make adoption straightforward. The small organization-backed project has no recent development or security policy, so pinning this version is preferable for production use.
68%
Total Score
75
88
83
The package has 10 releases since February 2016, but none in the last 12 months and its latest release was over two years ago, indicating a slow or stopped release cycle.
There were no commits and no active maintainers in the last three months, consistent with the release gap of over two years and raising abandonment risk.
Composer and Phing provide build tooling, but no security scanning tools were detected, leaving a modest security-maintenance gap.
The repository has no security policy, so users have no documented disclosure or response process if a vulnerability is found.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version 1.* | — | — |
guzzlehttp/guzzle Version ^6.3 | — | — |
roave/security-advisories Version dev-master | — | — |
runopencode/exchange-rate Version ~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.