Clear licensing, tests, and release notes make the package easier to evaluate. Its small project footprint and absent security policy leave less evidence of ongoing support.
65%
Total Score
50
100
81
83
The repository owner is an individual account rather than an organization, so the short visible ownership context does not provide organizational backing to offset the quiet maintenance.
The package has 9 releases since July 2018, but none in the last 12 months; its latest release was about 13 months ago. This points to slowing maintenance, though the release history is established rather than abandoned.
The repository recorded zero commits and zero active maintainers in the last 3 months. Combined with no registry releases in the last 12 months, this is meaningful evidence of currently quiet maintenance.
The repository has 0 stars, 1 fork, and 1 watcher. That indicates a very small visible user base and limited supporting evidence, although popularity alone does not make a package unhealthy.
Composer is used for the build, but no security scanning tools are configured. The build tooling is appropriate; the missing scanning is a modest transparency and hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.