Healthy and usable for dependency adoption, with a long release history and a current, unarchived repository. The main caveats are minimal recent development activity, a single active contributor, and no repository tests, changelog, or security policy.
78%
Total Score
67
100
88
83
The artifact includes a README, but neither the package nor repository includes tests or a changelog. The README points users to the main repository, so the missing local documentation and tests remain a modest transparency gap.
One contributor made all commits during the last 3 months, creating concentration risk. Organization ownership provides some ability to hand off maintenance, but no second active contributor is shown.
Only 1 commit was recorded in the last 3 months, by 1 active maintainer. Recent activity exists, but the pace is thin for a maintained library.
The repository uses Composer, but no security scanning tools are reported. Composer is appropriate build tooling, while the absent scanning is a minor process gap.
No security policy is present in the repository. For a mature library, this weakens the documented vulnerability-reporting path, though it is not by itself evidence of abandonment.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zf1s/zend-log Version ^1.16.2 | — | — |
zf1s/zend-memory Version ^1.16.2 | — | — |
zf1s/zend-exception Version ^1.16.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.