It has one runtime dependency and one registry maintainer, with no evidence of a mature release line. Use php-notify/notify-toastr instead, which the registry lists as its replacement.
15%
Total Score
50
100
17
Packagist marks the entire package as abandoned and names php-notify/notify-toastr as its replacement. This is a severe dependency risk regardless of its small dependency footprint.
This package has only one release, published over six years ago, with no releases in the last 12 months; that indicates abandonment risk.
Only one registry account has publish access. This is limited administrative coverage, and the old single-release history provides no evidence that this maintainer is actively supporting the package.
The latest version is 0.1 and is not a stable major release, offering little evidence of a mature, established API.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
yoeunes/notify Version v2.x-dev | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.