The package includes a README, a stable release, a matching source repository, and no install-time scripts. Maintenance has been inactive for nearly two years, and the repository has no security-scanning tooling or security policy.
60%
Total Score
75
100
88
83
The package has only 3 releases, with no release in nearly 2 years and a long median interval between releases. This is meaningful maintenance caution for a framework application, though not conclusive abandonment by itself.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the nearly two-year release gap and increasing abandonment risk.
Composer build tooling is present, but no security-scanning tools are configured. That is a hygiene gap rather than evidence that the release is unsafe.
The repository has no published security policy, reducing transparency for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mockery/mockery Version ^1.6 | — | — |
phpstan/phpstan Version ^1.11 | — | — |
phpunit/phpunit Version ^10.5 | — | — |
serve/framework Version 8.2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.