Simple Keycloak Guard for Lumen microservices
38%
Total Score
75
100
69
50
The package has only three releases, all clustered between November 27 and November 29, 2022, with none in the last 12 months; the latest repository push was also in November 2022. This is strong evidence of abandonment risk.
One registry maintainer is a thin publishing base, although the repository is organization-owned, which provides some backing and makes this less concerning than a clearly unsupported individual project.
The package includes a README, and the absence of tests or a changelog is normal for a published artifact; the repository also reports no tests or changelog, leaving limited verification and release documentation.
The repository has zero stars and forks and one watcher. Popularity is not required for a healthy small package, but these values provide no supporting evidence of active community use.
The linked repository has no security policy. This is a transparency and maintenance gap, though it is less decisive than the prolonged lack of releases.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
firebase/php-jwt Version ^6.3 | — | — |
guzzlehttp/guzzle Version ^7.5 | — | — |
voopite/lumen-environment-editor Version dev-main | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.