Database Manipulation Layer
66%
Total Score
caution
Usable with caveats: no commits in the last three months despite regular releases.
The package runs post-install and post-update Composer scripts, adding installation-time behavior that should be understood before use.
Only one account has registry publishing access, which limits publishing resilience. The repository is linked to the same apparent individual, so this is a capacity concern rather than evidence of a mismatch.
The repository recorded no commits and no active maintainers in the last three months. This is a maintenance warning, although the registry still shows regular releases.
Composer build tooling is present, but no security-scanning tool was detected, leaving a modest supply-chain hygiene gap.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/dbal Version 3.*|4.* | — | — |
psr/simple-cache Version 2.*|3.* | — | — |
ryunosuke/utility-attribute Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.