The MIT license and README make the package easier to evaluate, while its three-release history limits confidence. There is no security policy or security scanning, so maintenance gaps would be harder to detect.
12%
Total Score
0
50
75
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct indication that developers should not newly depend on it.
The package has only three releases, all clustered around September 2022, and none in the last 12 months. This provides little evidence of an active maintenance process.
The repository recorded zero commits and zero active maintainers in the last three months. Together with the archived status, this confirms absent current development activity.
The linked source repository is archived and was last pushed in September 2022, indicating the project is no longer maintained.
Composer build tooling is present, but no security scanning tools were detected. That limits automated detection of dependency or code issues.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
geoip2/geoip2 Version ~2.0 | — | — |
workerman/webman-framework Version 1.4.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.