Its README and license are solid; the 40 runtime dependencies make future upgrades more involved. The source repository is not archived, but security guidance is absent.
57%
Total Score
50
50
93
50
The release declares 40 runtime dependencies, creating a substantial upgrade and compatibility burden for projects adopting the boilerplate. This is partly expected for a full SilverStripe project template, but remains a maintenance concern.
The package has had no release in nearly four years: its latest release was November 2022, despite 14 releases overall. This is a meaningful maintenance concern for a project template with many moving parts.
The repository recorded 0 commits and 0 active maintainers in the last three months. Its last push was in March 2024, which provides some evidence of later activity but does not offset the current lull.
The linked repository has no security policy. That limits transparency about vulnerability reporting and response, although this is a hygiene gap rather than evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
jonom/focuspoint Version * | — | — |
php-http/message Version * | — | — |
guzzlehttp/guzzle Version * | — | — |
silverstripe/html5 Version * | — | — |
silverstripe/tagfield Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.