The small scope, clear README, MIT license, and simple dependency profile help limit adoption friction. However, there has been no release or repository activity since December 2016, and the project has no security policy or scanning tooling.
38%
Total Score
50
100
72
75
The package has only three releases, with the latest published in December 2016 and none in the last 12 months. This long period without releases is a substantial abandonment concern for a dependency.
The repository recorded zero commits and zero active maintainers during the last three months. Combined with the old last release, this strongly indicates that maintenance has stopped.
There are no open issues or pull requests, and no recent issue or pull-request activity. While orderly, this provides no evidence of active maintenance.
The repository has two stars, one fork, and one watcher. This is limited supporting evidence and does not materially offset the absence of recent maintenance.
Composer is used as the build tool, but no security scanning tools are configured. For an old package, the lack of automated security checks adds a modest transparency and maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.