Recent repository activity has stopped despite a maintained project structure and tests in the source repository. The release includes a clear README and notes, but its workflow references are all unpinned and it has no security policy.
42%
Total Score
50
100
81
50
Packagist marks the entire package as abandoned, with no replacement package specified; this is a major adoption and maintenance warning for this release.
A post-update Composer lifecycle script is present; this adds install-time execution surface, but the signal alone does not establish a maintenance or abandonment problem.
The package has existed since December 2020 with 10 releases, but has had no releases in the last 12 months; the long gap lowers confidence in ongoing maintenance.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, indicating currently limited development activity despite the recent release history.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
dragon-code/support Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.