The package contains only five files and a 12-character README, limiting integration guidance. It also lacks a security policy and automated security scanning, leaving maintenance practices less transparent.
42%
Total Score
0
100
67
75
This is the only release, published in June 2016, with no releases in the last 12 months. The stable 1.0 version does not compensate for nearly ten years without a new release.
There were no commits and no active maintainers in the last three months, while the repository was last pushed in August 2016. This is strong evidence of abandonment risk.
The artifact includes a README, but it is only 12 characters long and provides virtually no consumer guidance. Missing tests and a changelog are normal for published artifacts and are not counted against the package.
Composer is used as a build tool, but no security-scanning tools are present. That weakens supply-chain hygiene, although the package's small five-file tree limits the scope of the gap.
The repository has no security policy, leaving users without documented vulnerability-reporting guidance. This is a transparency gap, though it is less severe than the long maintenance pause.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/jquery Version >=1.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.