The package includes documentation, tests, and a changelog, and its repository remains unarchived. Its small user base and missing security policy reduce confidence for long-lived production use.
58%
Total Score
50
75
50
Only two releases exist, with no release in more than five years; the 109-day median interval shows the project was brief rather than continuously maintained.
There were no commits and no active maintainers in the last three months, consistent with the absence of releases since December 2020 and raising abandonment concerns.
The repository has only 1 star and 1 fork, indicating little visible external adoption or review to supplement the single-owner project.
Composer is used for builds, but no security-scanning tool was detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no documented channel or process for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
laminas/laminas-stdlib Version ^3.0 | — | — |
api-skeletons/oauth2-doctrine Version ^4.0 || ^5.0 | — | — |
laminas/laminas-modulemanager Version ^2.7 | — | — |
laminas/laminas-dependency-plugin Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.