Usable with caveats: it has a long release history, recent releases, stable versioning, and an active organization-owned repository. Maintenance is thin, with only one commit from one contributor in the last three months and no tests, changelog, or security policy.
74%
Total Score
67
100
83
83
A README is present, but neither the artifact nor repository contains tests or a changelog. For a library, the absence of both reduces maintenance transparency and makes changes harder to validate.
All recent commits came from one contributor, creating a narrow maintenance base. Organization ownership provides some handoff capacity, but no second active contributor is shown.
There was one commit in the last three months from one active maintainer. Recent activity is better than abandonment, but the very low volume limits confidence in sustained maintenance.
The repository has zero stars and zero forks, with one watcher. Popularity is only supporting evidence, but these counts provide little external evidence of broad community support.
Composer is used as a build tool, but no security scanning tools are present. The missing scanning is a transparency gap, though it is not by itself evidence of unsafe code.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zf1s/zend-exception Version ^1.16.2 | — | — |
zf1s/zend-controller Version ^1.16.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.