MIT licensing, a clear README, and release notes make its current contents understandable. The repository has no security policy or security-scanning tools, leaving limited defensive transparency.
15%
Total Score
0
71
50
Packagist marks the entire package as abandoned, making this release unsuitable for a new dependency despite having no replacement listed in the registry metadata.
The repository recorded zero commits and zero active maintainers during the last 3 months, providing direct evidence that ongoing maintenance has stopped.
The package has only five releases over about 2 years and 9 months, with one release in the last 12 months; the sparse cadence is consistent with its stated retirement.
Composer build tooling is present, but no security-scanning tools are reported. This is a transparency and maintenance gap, though it is secondary to the package's explicit abandonment.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in a package that is no longer maintained.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spatie/url Version ^2.4 | — | — |
nesbot/carbon Version ^3.0 | — | — |
guzzlehttp/guzzle Version ^7.8 | — | — |
kongulov/interact-with-enum Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.