MIT licensing, a matching repository, and release notes provide useful transparency. Its small 0.1.x scope and several runtime dependencies leave more compatibility uncertainty than a mature package would.
58%
Total Score
75
79
83
The package has only two releases, with the latest published in May 2020 and none in the last 12 months. This indicates a long-standing maintenance gap, though the repository was pushed more recently.
There were no commits and no active maintainers in the three months measured. This is direct evidence of currently inactive development, although the repository is not archived.
Composer is used for the build, which fits the package ecosystem, but no security scanning tooling was detected. The missing scanning is a modest transparency and maintenance gap.
The repository has no security policy. That does not show a vulnerability, but it gives consumers no documented path for reporting security issues.
Version 0.1.1 is not marked prerelease, which avoids prerelease instability, but the low major version signals a relatively immature API.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
armincms/koomeh Version ~0.2 | — | — |
armincms/launcher Version ~0.1 | — | — |
armincms/many-to-many Version ~0.1 | — | — |
zareismail/nova-wizard Version * | — | — |
owenmelbz/nova-radio-field Version ~0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.