Its README, changelog, and release notes make the implementation and version changes easy to inspect. The stable artifact has no install-time scripts, but that does not offset the lack of ongoing maintenance.
10%
Total Score
0
50
75
Packagist marks the entire package as abandoned and names mezzio/mezzio-session-ext as its replacement. This directly makes the assessed package unsuitable for a new dependency.
The latest release was published in October 2019, with no releases in the last 12 months. This strongly indicates the package is no longer maintained, although its earlier release cadence was regular.
There were no commits and no active maintainers in the last three months. Together with the archived repository, this provides direct evidence of abandoned development.
The source repository is archived, with its last push nearly seven years ago. Archived source indicates maintenance has ended and leaves future compatibility issues unaddressed.
The linked repository has no security policy. This is a transparency gap, though it is secondary to the stronger evidence that the project has been abandoned.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
dflydev/fig-cookies Version ^1.0 || ^2.0 | — | — |
zendframework/zend-expressive-session Version ^1.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.