The repository remains linked, unarchived, and builds with Composer, with only one runtime dependency. Its README is just 25 characters, and no security tooling or policy is present.
62%
Total Score
75
100
79
75
The artifact includes a README and a GitHub release for this version, but the README is only 25 characters long. The absence of tests and a changelog in the published artifact is normal packaging practice and is not a concern here.
The package has only 3 releases since May 2021, with no releases in the last 12 months and a median interval of about 728 days. This indicates a slow maintenance cadence, though the latest release is relatively recent.
The repository had 0 commits and 0 active maintainers in the last 3 months. With no recent release activity to offset this, ongoing maintenance capacity is uncertain.
The repository uses Composer, which supports reproducible project management, but no security scanning tools are configured. This is a modest transparency and maintenance gap rather than a severe risk.
The linked repository has no security policy. For a small extension this is a limited gap, but it provides no documented path for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/cms Version ^4|^5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.