40%
Total Score
unhealthy
Risky: no release since 2021, a broad 16-package runtime dependency set, and one publisher.
The package has had no release in about five years, despite 15 releases since 2018. That long period without updates is strong evidence of abandonment risk.
Sixteen runtime dependencies create a broad maintenance and compatibility surface for a CLI, increasing the cost of relying on an old release.
Only one account has publish access, indicating limited apparent publishing capacity. This is administrative evidence rather than proof of current activity, so it is a concern but not independently severe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ~1.0 | — | — |
geoip2/geoip2 Version ^2.9 | — | — |
leafo/lessphp Version ^0.5.0 | — | — |
leafo/scssphp Version ^0.7.5 | — | — |
natxet/cssmin Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.