Usable with caveats: it is a stable, actively released package from an organization-backed repository, but recent work is limited to one contributor and the project has no tests, changelog, or security policy.
72%
Total Score
63
100
83
90
A README is present, but neither the artifact nor repository includes tests or a changelog. The README points users to the main repository for issues and pull requests, which partly explains the sparse standalone package.
All one recent commit came from a single contributor, creating concentration risk. The repository is organization-owned, which provides some capacity to hand maintenance off, so this is a caution rather than a severe risk.
Only one commit from one active maintainer was recorded in the last three months. Recent registry releases provide some compensating evidence, but source activity is still thin.
No new or closed issues or pull requests were recorded in the last month; the null open-count fields leave the broader issue picture incomplete.
The repository has zero stars, one fork, and one watcher. This is weak supporting evidence, but popularity alone does not outweigh the package's long release history and recent releases.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zf1s/zend-exception Version ^1.16.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.