The package includes clear usage documentation, a license, release notes, and a small runtime dependency footprint. The missing security policy leaves little guidance for reporting vulnerabilities.
52%
Total Score
50
100
80
50
The latest release was published in May 2022, with no releases in the last 12 months. This materially raises abandonment and compatibility risk for a framework addon.
The repository has had no commits and no active maintainers in the past three months, reinforcing the long release gap and suggesting maintenance may have stopped.
The repository has no security policy, leaving no documented process for reporting vulnerabilities. This is a transparency and maintenance weakness, though it does not by itself make the package unfit.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
statamic/cms Version ^3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.