The MIT license, changelog, and matching organization repository improve transparency. No release has appeared for about 19 months, and the repository recorded no commits or active maintainers in the last three months. Composer tooling is present, but security scanning is not.
58%
Total Score
83
100
83
75
The package has 28 releases, but none in the last 12 months; its latest release was about 19 months before collection. This is a meaningful maintenance concern despite the earlier release history.
The repository had zero commits and zero active maintainers in the last three months. Combined with no releases in the last year, this points to stalled rather than active maintenance.
The repository has no stars or forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide little evidence of a broad support base.
Composer build tooling is present, but no security scanning tools were detected. This is a hygiene gap that matters more for long-lived dependencies, though it is not severe on its own.
The repository has no security policy. That weakens vulnerability-reporting transparency, but the gap is moderate because the package is not shown to be actively exposed to a known issue.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
webservco/data Version ^1 | — | — |
webservco/form Version ^1 | — | — |
webservco/http Version ^1 | — | — |
webservco/view Version ^1 | — | — |
psr/http-message Version ^2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.