A clear README, MIT licensing, and a matching source repository make installation and ownership easy to understand. However, the project has not released or received repository updates since August 2016, so current fixes and compatibility support should not be expected.
38%
Total Score
64
50
This package has only one release, published about 10 years ago, with no releases in the last 12 months. That strongly indicates abandonment and outweighs its stable 1.0.0 version.
The repository has zero stars, one fork, and one watcher. Popularity is not required for a healthy package, but these figures provide no supporting evidence of active community oversight.
Composer and Box provide build tooling, but no security-scanning tools are present. This is a transparency and maintenance gap, especially alongside the long period without updates.
The repository is not archived, which leaves open the possibility of future maintenance, but its last push was also in August 2016 and does not offset the stale release history.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in a package that manages database backups.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/yaml Version ~3.0 | — | — |
nesbot/carbon Version ~1.0 | — | — |
symfony/console Version ~2.0 || ~3.0 | — | — |
league/flysystem Version ~1.0 | — | — |
vlucas/phpdotenv Version ~2.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.