Tests, documentation, and a matching MIT license support adoption, and the repository is not archived. Expect to own compatibility fixes rather than relying on active upstream support.
45%
Total Score
50
86
83
The package has had no release in more than 8 years, with zero releases in the last 12 months. Its 33-release history shows earlier activity but does not offset the prolonged release hiatus.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with a project that is no longer actively maintained.
The project uses Composer and Phing, which supports reproducible build work, but it reports no security-scanning tools. That is a modest hygiene gap rather than evidence of an unsafe release.
The repository has no security policy, leaving no documented process for reporting or handling security issues. This adds a transparency gap to an already inactive project.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ass/xmlsecurity Version ~1.0 | — | — |
zendframework/zend-mime Version 2.1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.