The small dependency surface and stable release format reduce integration risk. The package is licensed, documented, and clearly matches its repository, but its maintenance outlook remains weak.
42%
Total Score
50
100
78
75
The latest release was about three years and seven months ago, with no releases in the last 12 months. Six total releases show some past activity, but the current release cadence indicates likely abandonment.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the long release gap and leaving little evidence of ongoing maintenance.
The repository has no stars or forks and only two watchers. Low popularity is not decisive for a small package, but it provides little supporting evidence of broad community oversight.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency gap, especially alongside the absence of recent maintenance activity.
No repository security policy was detected. For this small logging package this is a secondary hygiene gap, but it provides no documented channel for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ^3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.