The catpaw project
22%
Total Score
critical
Unfit to use: Packagist marks the package abandoned.
Packagist marks the entire package abandoned, with no replacement specified. This is a severe adoption risk even though the linked repository is not archived.
The package has had no registry releases in more than two years, despite 197 releases overall. The long publication gap raises abandonment and stale-release concerns.
The repository is owned by an individual account rather than an organization, so there is no organizational maintenance capacity to offset the narrow contributor base.
All recent repository activity comes from one contributor, leaving maintenance dependent on a single person. The repository is user-owned, so there is no organizational backing shown to compensate.
The repository has only one commit in the last three months, showing limited recent maintenance activity. This partly offsets the registry inactivity but does not remove the concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
amphp/amp Version ^3.0 | — | — |
twig/twig Version ^3.0 | — | — |
amphp/file Version ^3.0 | — | — |
amphp/process Version ^2.0 | — | — |
amphp/parallel Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.