It includes a clear README, tests, changelog, and BSD-3-Clause licensing. The source repository matches the package and has a security policy, but no security scanning and a single user-owned project reduce resilience.
42%
Total Score
0
69
100
The latest release was on November 21, 2020, with no releases in the last 12 months; nearly six years without a release is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating inactive maintenance.
The repository has zero stars, forks, and watchers. Popularity is not required for health, but combined with absent recent activity this provides no visible community support.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository hygiene gap.
The package is marked as a stable major release, but the reported latest version is an older prerelease, making the version history inconsistent and reducing confidence in current release management.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version ~2.0.13 | — | — |
cebe/markdown Version ~1.2.0 | — | — |
cebe/js-search Version ~0.9.3 | — | — |
nikic/php-parser Version ^1.0 | — | — |
cebe/markdown-latex Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.