It has a clear README, stable versioning, and a small runtime dependency set. The matching source repository and license improve transparency, but security coverage is limited.
58%
Total Score
50
100
79
75
The latest release was published in April 2015, with no releases in the last 12 months and 18 releases overall. This is strong evidence of a long-maintained legacy package, although stability may partly explain the lack of releases.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's long release gap. That materially raises abandonment and compatibility risk.
Composer is used as the build tool, showing basic project packaging structure. No security scanning tools are configured, leaving a modest transparency and maintenance gap.
The repository has no security policy. For a mature library this limits the documented path for reporting vulnerabilities and responding to security issues.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zf1/zend-exception Version self.version | — | — |
zf1/zend-reflection Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.