The small codebase and two runtime dependencies keep the package easy to inspect. Its organization backing and stable release history help, but the lack of recent activity and security policy make long-term maintenance uncertain.
57%
Total Score
75
100
78
50
The package has 9 releases since May 2017, but none in the last 12 months and the latest was published about 3 years ago. This supports maturity but indicates that maintenance may have stopped.
There were no commits and no active maintainers in the last 3 months, consistent with the long release gap and raising abandonment risk.
The repository name does not match the package name and its README does not mention the package, so the linkage is less transparent than expected. The mismatch may still be ordinary for a sub-package or renamed project.
The repository has 1 star and 1 fork, indicating limited adoption evidence. Popularity is only supporting evidence, so this is a modest concern rather than a verdict.
Composer is used for builds, but no security-scanning tooling is reported. This is a hygiene gap for a package with no other evidence of recent maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/cms Version ^4|^5 | — | — |
silverstripe/framework Version ^4|^5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.