Package Health

blankogmbh/kirby-oauth

Kirby OAuth 2 Plugin

Latest v3.6.0PackagistPackagist

42%

Total Score

unhealthy

Risky: the package is deprecated and has a named replacement.

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names thathoff/kirby-oauth as its replacement. This is a major adoption risk even though the assessed release is current.

Repo commit activitycaution

There were no commits and no active maintainers in the last 3 months, indicating that ongoing development activity has recently stopped.

Security policycaution

The repository has no security policy, leaving vulnerability-reporting expectations unclear. This is a transparency gap, though other repository documentation and release evidence partly offset it.

Workflow auditcaution

The audit covered both workflows without high-confidence findings or untrusted execution sinks, but all 4 action references are unpinned and one workflow grants top-level write access. This is a supply-chain hygiene concern, not a standalone severe risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Markus Denhoff
reinorange GmbH

Direct Dependencies

DependencyLast ReleaseScore
league/oauth2-client
Version ^2.4
—
—
getkirby/composer-installer
Version ^1.1
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform