Documentation, tests, release notes, and a matching MIT license are present, and the repository is not archived. However, no releases or commits have appeared since April 2021, leaving this alpha release with substantial abandonment risk.
45%
Total Score
50
71
50
The package has 10 releases over roughly 10 years, but none in the last 12 months; its latest registry release was about 5 years ago. The earlier median interval of about 15 days shows historical activity but does not offset the prolonged current gap.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the package's long release gap. This is strong evidence of abandonment risk even though the repository remains available.
The repository uses Composer and Robo build tooling, showing some project structure. It has no security scanning tools, which is a minor transparency and maintenance gap but not the main reason for the low score.
The repository has no security policy. For a CMS with authentication and web-facing functionality, this weakens vulnerability-reporting transparency, although it is secondary to the long maintenance gap.
The assessed version is an alpha release and the indicator reports no stable major version, which increases compatibility and maintenance uncertainty. The recent prerelease share is low, but that does not compensate for the alpha status.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
slim/slim Version ^3.8 | — | — |
symfony/yaml Version ^3.2 | — | — |
league/plates Version ^3.3 | — | — |
pimple/pimple Version ^3.0 | — | — |
psr/container Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.