The package has a clear BSD-3-Clause license, a usable README, no install-time scripts, and only two runtime dependencies. Its source repository is not archived and matches the package, but the project shows no recent maintenance or security tooling.
42%
Total Score
0
100
79
83
The last release was in July 2017, and there were no releases in the last 12 months. This long period without published updates is a substantial abandonment concern.
The repository recorded zero commits and zero active maintainers in the last three months, confirming that the lack of releases reflects inactive source maintenance.
Composer is used for the build, but no security scanning tools are present. The missing scanning is a minor transparency gap rather than evidence of abandonment by itself.
The repository has no security policy, leaving vulnerability-reporting and maintenance expectations unclear. This adds a modest transparency concern alongside the stale project.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zf1/zend-exception Version self.version | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.