The package has minimal release history and no recent repository activity, leaving little evidence of ongoing maintenance. Its license declaration conflicts with the repository license, adding a transparency concern; the README and small dependency set do not offset the abandonment risk.
12%
Total Score
0
100
30
100
Packagist marks the entire package as abandoned, with no replacement provided; this is a severe adoption and maintenance warning.
There has been only one release, 0.0.1, and no releases in the last 12 months; this provides no evidence of continued maintenance.
The repository had zero commits and zero active maintainers in the last 3 months, consistent with long-term abandonment.
The linked repository is archived and was last pushed in June 2018, indicating the project is no longer maintained.
The manifest declares GPL-2.0+, while the repository license file was detected as GPL-3.0; the mismatch creates licensing uncertainty for adopters.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms Version >=8.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.