Healthy and reasonable to adopt. It has a long release history, a current stable release, active organization backing, and a matching source repository; the main concerns are one-contributor activity and the absence of tests, changelog, and security policy.
78%
Total Score
63
100
83
90
A README documents installation and points to the main repository, but neither the package nor repository includes tests or a changelog. This reduces transparency, though the package is a focused split of a larger framework.
All recent commits came from one contributor, creating a concentrated maintenance path. The organization-owned repository provides some ability to hand maintenance off, so this is a caution rather than a severe risk.
Only 1 commit from 1 active maintainer was recorded in the last 3 months. Recent activity exists, but the pace is thin for a maintained dependency.
There were no new or closed issues or pull requests in the last month, while the open issue and pull-request totals are unavailable. This provides little evidence of community activity.
The repository has 0 stars, 3 forks, and 1 watcher, indicating limited public adoption. Popularity is supporting evidence only, so this lowers confidence more than it affects the health verdict.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
zf1s/zend-loader Version ^1.16.2 | — | — |
zf1s/zend-registry Version ^1.16.2 | — | — |
zf1s/zend-exception Version ^1.16.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.