The project has a clear README, tests in its repository, a stable release, and an organization-backed source project. Its security documentation is limited, and the single registry publisher does not offset the lack of recent package releases or repository activity.
58%
Total Score
63
50
83
88
The package has 20 releases over more than 12 years, but it has had no release in the last 12 months; the latest registry release was in October 2018, which raises abandonment risk.
No commits and no active maintainers were recorded in the last three months, a strong sign that development has stalled despite the repository not being archived.
The package has four runtime dependencies, including Doctrine DBAL, which is a moderate dependency surface for an ORM and warrants routine compatibility monitoring.
There are 58 open issues and 6 open pull requests, with no issues or pull requests opened or merged in the last month; this supports concern about responsiveness.
Composer is used for builds, but no security scanning tooling is configured. The missing scanning is a transparency gap, though it is not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sabre/event Version ~2.0 | — | — |
doctrine/dbal Version ^2.5.4 | — | — |
vlucas/valitron Version ~1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.