The last release was published in April 2016, leaving the package more than ten years without a new release. Its stable version label offers little reassurance against the registry marking the package abandoned.
10%
Total Score
33
Packagist marks the entire package as abandoned, with no replacement package provided. This is a severe adoption risk independent of its stable version number.
The package has had no releases in more than ten years, despite 12 releases early in its history; this strongly indicates abandonment risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version 1.0.* | — | — |
psr/cache Version 1.0.* | — | — |
twig/twig Version 1.24.* | — | — |
pimple/pimple Version 3.0.* | — | — |
guzzlehttp/psr7 Version 1.2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.