Unfit to use for a new dependency: the package is abandoned and officially replaced, with no release in nearly seven years and an archived repository. Its license, documentation, tests, and package structure are orderly, but they do not offset the lack of maintenance.
15%
Total Score
50
100
56
90
Packagist marks the entire package as abandoned and names laminas/laminas-modulemanager as its replacement. This is a direct adoption warning and makes the release unfit for new dependencies.
The package has a substantial history of 73 releases, but its latest release was nearly 7 years ago and it had no releases in the last 12 months. The long release gap indicates abandonment rather than merely a small or stable project.
The repository recorded zero commits and zero active maintainers over the last 3 months, consistent with its archived status and showing no current development capacity.
The source repository is archived and was last pushed about 6 years and 8 months ago, so normal maintenance and issue response should not be expected.
Composer is used for builds, but no security-scanning tools are present. The missing scanning is a transparency gap, though the more decisive risks are the archived repository and package deprecation.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zendframework/zend-config Version ^3.1 || ^2.6 | — | — |
zendframework/zend-stdlib Version ^3.1 || ^2.7 | — | — |
zendframework/zend-eventmanager Version ^3.2 || ^2.6.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.