The repository has no security policy, no measured adoption, and no release or commit activity in over a year. Tests, an MIT declaration, and no install scripts provide some reassurance, but the maintenance gap remains substantial.
42%
Total Score
0
67
75
The package has had no release in the last 12 months, and its latest release was about 19 months ago. Four releases in total show an earlier release history, but the current gap materially raises abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. The repository is not archived, but there is no observed recent maintenance.
The repository has 0 stars, 0 forks, and 1 watcher, providing little community evidence to compensate for the lack of recent project activity.
Composer build tooling is present, but no security-scanning tool was detected. This is a moderate transparency and maintenance gap rather than evidence of an unsafe release by itself.
No security policy was found in the linked repository, leaving vulnerability reporting and response expectations unclear for a framework handling authentication, mail, and database features.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jwt/php-jwt Version * | — | — |
monolog/monolog Version ^3.8 | — | — |
firebase/php-jwt Version ^6.9 | — | — |
phpmailer/phpmailer Version ^6.8 | — | — |
symfony/http-foundation Version ^5.3|^6.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.