The package includes tests, a substantial README, and a declared Unlicense. Its release and repository activity stopped after a brief launch period, and the repository has no security scanning or security policy.
58%
Total Score
67
100
83
75
There were no commits and no active maintainers in the last three months, while the last repository push was about 14 months ago. This is the strongest evidence that maintenance may have stalled.
Only two releases were published about one minute apart, with no releases in the last 12 months despite the package being about 14 months old. This indicates a thin release track and raises maintenance risk.
The repository has three stars, 11 forks, and no watchers. This is limited community evidence, but popularity is supporting context rather than a decisive health measure.
The repository uses Composer, providing normal build and dependency tooling. No security scanning tools are configured, which is a modest transparency and maintenance gap.
The repository has no security policy. That weakens disclosure transparency, although it is less significant than the demonstrated lack of recent maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/psr7 Version ^1.7 || ^2.0 | — | — |
guzzlehttp/guzzle Version ^7.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.