The five-file package includes tests and uses Composer for dependency management. Missing licensing and a repository that does not clearly mention the package weaken transparency and make future support uncertain.
38%
Total Score
0
67
75
The last release was in March 2018, with no releases in the past 12 months; this strongly suggests the package is no longer maintained.
The repository had zero commits and zero active maintainers in the past three months, reinforcing the long maintenance gap.
No declared license or license file was found in the package or repository, leaving the legal terms for adoption unclear.
The repository name does not match the package name and its README does not mention the package, so package ownership is less transparent.
The repository has no security policy, which reduces transparency for reporting and handling vulnerabilities in an externally consumed library.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0 | — | — |
unapi/unapi Version 1.1.0 | — | — |
guzzlehttp/guzzle Version ^6.3 | — | — |
unapi/helper-money Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.