Recent repository publication shows some ongoing ownership, but maintenance activity is currently absent and no security policy or scanning is provided. The package is explicitly marked abandoned, so pinning it carries substantial adoption risk.
20%
Total Score
75
100
75
83
Packagist marks the entire package as abandoned, with the stated replacement resolving to the same package name; this is a severe adoption and continuity warning.
The package has 44 releases since February 2022 and a release as recent as March 2026, but only one release in the last 12 months indicates a sharply slower cadence.
There were zero commits and zero active maintainers in the last three months, leaving no evidence of current development activity beyond the recent release push.
Four issues remain open, with no issues or pull requests opened or closed in the last month; this suggests limited recent interaction but not abandonment by itself.
Composer build tooling is present, but no security scanning tools are configured, leaving a modest transparency and maintenance gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
craftcms/cms Version ^5.0.0 | — | — |
craftcms/ckeditor Version ^4 || ^5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.