The MIT license and small dependency set make adoption straightforward. Organization ownership helps, though the project offers limited security and testing support.
58%
Total Score
83
100
81
75
The latest release was published in April 2019, with no releases in the last 12 months and a package age of about 7 years 10 months. This is a substantial maintenance concern despite 12 historical releases.
The repository had zero commits and zero active maintainers in the last 3 months. Combined with the old registry release, this supports a meaningful abandonment concern.
The repository name does not match the package name and its README does not mention this package. That raises uncertainty about whether the linked repository is the actual source, even though name differences can occur for subpackages.
The repository uses Composer, but no security scanning tools were detected. The missing scanning is a hygiene gap, not a severe risk by itself.
The repository has no security policy. For a package monitoring Ethereum transactions, this weakens vulnerability-reporting transparency.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sc0vu/web3.php Version dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.