Its MIT license, matching repository, and release notes improve transparency. The small interface-only artifact has no install scripts, but that does not offset the lack of ongoing support.
12%
Total Score
0
42
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning against taking a new dependency on the package.
The package has had no releases in the last 12 months, and its latest release was about 6 years ago. This strongly indicates abandonment rather than an actively maintained dependency.
The repository had 0 commits and 0 active maintainers in the last 3 months, consistent with its archived status. There is no observed maintenance activity to compensate for the age of the latest release.
The linked repository is archived, and its last push was about 6 years ago. Archived source indicates the project is no longer maintained.
The assessed version is v0.2.2 and the package has not reached a stable major version. This adds compatibility uncertainty, although the abandonment and archive signals are more decisive.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
facebook/hack-http-request-response-interfaces Version ^0.2|^0.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.