The README gives basic installation and usage guidance, and the package has only one runtime dependency. Its tiny repository has no tests or security tooling, leaving limited evidence that future changes would be maintained safely.
35%
Total Score
0
100
69
67
This is the only release, published in July 2019, with no releases in the following seven years. That strongly indicates abandonment risk, though the stable 1.0 version avoids prerelease instability.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package having received no meaningful maintenance since 2019.
Neither the package nor the linked repository contains a license declaration or license file. This creates a real adoption and redistribution concern.
The package contains only BitlyConnect.php, README.md, and composer.json, with the repository matching that minimal tree. This is transparent but provides little evidence of engineering depth or maintenance safeguards.
The repository has zero stars, forks, and watchers, so there is no visible community support to compensate for the absence of recent maintenance. Popularity is supporting evidence rather than the primary concern.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.