The package has clear licensing, a documented release, and repository tests. Its long period without maintenance means framework or API compatibility may be stale.
58%
Total Score
67
100
78
75
The package has 7 releases, but none in the last 12 months; the latest release was published more than five years ago. This is a substantial maintenance concern despite the earlier release cadence.
The repository had zero commits and zero active maintainers in the last 3 months, consistent with more than five years since the last push. This materially raises abandonment and compatibility risk.
There is one open issue and no new or closed issues or pull requests in the last month. The low activity is consistent with the broader maintenance slowdown, though the issue count alone is not severe.
The repository has 2 stars and 2 forks, indicating limited adoption evidence. Popularity is only supporting evidence, so this modest footprint does not determine the verdict.
Composer is used for the build, but no security scanning tools were detected. The missing scanning is a hygiene gap, not evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
printu/customerio Version ^3.0 | — | — |
illuminate/support Version ^7.0|^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.