MIT licensing, tests, documentation, and a small runtime dependency set reduce adoption friction. Use grafite/crypto instead, since this package is unlikely to receive fixes.
10%
Total Score
0
100
42
50
The registry marks the entire package as abandoned and names grafite/crypto as its replacement. Package-level deprecation is a severe dependency risk even though this is not limited to one release.
The package has had no releases in more than seven years, despite having nine releases overall. The long gap strongly indicates abandonment.
There were zero commits and zero active maintainers during the last three months, consistent with the archived repository and absent recent releases.
The linked repository is archived, and it was last pushed more than seven years ago. This indicates the source project is no longer maintained.
Composer build tooling is present, but no security-scanning tools were detected. That weakens security-maintenance transparency without independently determining package fitness.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ramsey/uuid Version ^3.8 | — | — |
illuminate/support Version 5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.