The small codebase is documented, tested, licensed, and has no runtime dependencies. Its basic tooling and missing security policy leave little evidence of ongoing support or planned maintenance.
10%
Total Score
50
100
56
75
Packagist marks the entire package as abandoned, with no replacement named. This is a direct warning against taking a new dependency on the package.
The package has only two releases, both in 2014, and none in roughly 12 years. That leaves no evidence of current maintenance or adaptation to newer PHP ecosystems.
The repository recorded no commits and no active maintainers in the last 3 months. Combined with the archived state, this supports a conclusion of abandonment rather than merely slow development.
The linked repository is archived, and its last push was about 8 years ago. Archived source strongly indicates that fixes and compatibility work are no longer expected.
The repository uses Composer for builds, but has no security-scanning tooling. The missing scanning is a modest hygiene gap, especially in an otherwise inactive project.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.