Unfit to use: the package is abandoned in the registry and its source repository is archived, with no release in nearly 10 years. It has sound licensing, documentation, tests, and a small dependency footprint, but those strengths do not offset the lack of maintenance.
15%
Total Score
50
100
61
83
Packagist marks the entire package as abandoned, with no replacement identified. This is a severe adoption risk because future fixes and compatibility updates are unlikely.
The latest release was published in November 2016, with no releases during the last 12 months. Nearly 10 years without a release indicates substantial abandonment risk.
The repository had no commits and no active maintainers in the last 3 months, consistent with its archived status and the long release gap.
The linked repository is archived, and its last push was about 5 years ago. An archived source project is effectively no longer maintained.
There are 7 open issues and 4 open pull requests, but none were opened or closed and no pull requests were merged in the last month. The outstanding work has no visible current response.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/polyfill-mbstring Version ^1.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.