The package offers a small Composer dependency surface and a stable release. However, it has no README, license, tests, changelog, security policy, or recent repository activity, leaving maintenance and adoption risks unresolved.
38%
Total Score
50
71
75
Neither the package metadata nor the artifact or repository contains a recognized license or license file. This creates a concrete adoption and redistribution concern.
The package has no README, while its source repository also has no tests or changelog. Missing tests and changelog are common in published artifacts, but the absent README makes library integration less transparent.
This is the package's only release, published in February 2017, with no releases in the last 12 months. The roughly nine-year release gap is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, and its last push was in September 2021. That long period without observed maintenance materially weakens confidence in support and compatibility.
Composer is used for the build, which is appropriate for this package, but no security scanning tooling is present. The missing scanning is a modest hygiene concern alongside the broader maintenance gaps.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
phpseclib/phpseclib Version >=2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.