Its small dependency set and Apache-2.0 license help, but documentation and security process are thin. Pin this version and expect limited maintainer response.
58%
Total Score
75
100
67
75
The package has no README or tests, which weakens consumer guidance and verification for a library. Its changelog, GitHub release, and release notes partly compensate for the documentation gap.
Only two releases have appeared over roughly 2 years and 9 months, with one release in the last year. The recent release is encouraging, but the overall cadence is sparse.
The repository recorded no commits and no active maintainers during the last 3 months. A recent release exists, but there is little observed ongoing maintenance capacity.
The repository name does not match the package name, and no README package mention was collected. That makes the package-to-repository relationship less transparent, though subpackages can legitimately use different repository names.
The repository has zero stars, forks, and watchers, providing no supporting evidence of broad adoption or community visibility. Popularity is only supporting evidence, so this is a modest concern rather than a verdict.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
phpxmlrpc/phpxmlrpc Version ~3.0|~4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.