A Post-Redirect-Get specialised framework for PHP
62%
Total Score
caution
Usable with caveats: releases and recent commit activity have stopped, suggesting maintenance may be slowing.
The package has 63 releases since 2017, but none in the last 12 months; its latest release was about 15 months ago. This indicates a meaningful maintenance slowdown despite the long release history.
There were no commits and no active maintainers in the last 3 months. This is direct evidence of currently quiet development and raises abandonment risk.
The repository has no security policy. That leaves vulnerability reporting and disclosure expectations less transparent for a framework package.
The single workflow was fully analyzed with no detected dangerous sinks or audit findings, but all six action references are unpinned. That weakens supply-chain reproducibility without indicating a severe workflow risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
smarty/smarty Version >=3.1.48 <5.0.0 | — | — |
symfony/debug Version <5.0.0 | — | — |
symfony/console Version >=4.0.0 | — | — |
psr/http-message Version ^1.0 || ^2.0 | — | — |
guzzlehttp/guzzle Version >=6.0.0, <8.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.