It has clear documentation, MIT licensing, a small dependency surface, and no install-time scripts. The source repository is intact and correctly linked, but the package has not been updated since April 2017, making future compatibility and support uncertain.
38%
Total Score
0
100
67
75
The package has had 5 releases, but none in the last 12 months; its latest release was in April 2017, roughly 9 years ago. This is strong evidence of abandonment risk despite the early burst of releases.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the package's long release gap. No provided signal shows current maintenance capacity.
The linked repository is not archived, which is a compensating signal against complete abandonment. However, its last push was in April 2017, so the unarchived status does not establish active maintenance.
The repository has no security policy, reducing transparency about how vulnerabilities should be reported. This is a secondary concern alongside the much stronger evidence of inactivity.
The assessed release is v0.2.1 and is not a stable major version, which indicates a less mature compatibility commitment. It is not marked as a prerelease, so this is a moderate concern rather than a severe one.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpspec/phpspec Version ^3.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.