Security documentation and automated scanning are absent, which leaves maintenance practices less visible. The library is licensed, tested, stable, and has release notes for this version.
62%
Total Score
50
100
83
75
The repository is owned by an individual user rather than an organization, so the small project has no visible organizational backing to offset the inactive maintenance signal.
The package has six releases since May 2019, but none in the last 12 months and the latest release was in February 2024, indicating a long maintenance gap.
There were no commits and no active maintainers in the last three months, consistent with the latest push being in February 2024 and indicating inactive maintenance.
The repository has seven stars and one fork, showing limited adoption and external validation. That is supporting evidence only, so it modestly lowers confidence rather than determining health.
Composer build tooling is present, but no security scanning tool is configured, leaving automated security checks unverified.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.