The small package has a valid MIT license and no install scripts, but its 13-character README offers little integration guidance. No tests or security scanning further limit confidence in maintenance.
40%
Total Score
0
67
75
The last release was published in March 2020, with no releases in the last 12 months despite the package being over seven years old. This is strong evidence of abandonment risk, although the package is not deprecated.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap. No provided signal shows ongoing maintenance capacity.
The artifact includes a README, but it is only 13 characters long and there are no tests or changelog. Missing tests and changelog are normal for published artifacts, while the extremely brief README leaves consumers with little guidance.
The repository has zero stars and forks and one watcher, providing no supporting evidence of broad community use or review. Low popularity alone does not make a small, maintained package unhealthy, but here it offers no compensation for inactivity.
Composer build tooling is present, but the repository reports no security scanning tools. This is a maintenance and transparency gap, though it is less significant than the absence of recent releases and commits.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ueef/machina Version ^0.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.