Documentation, tests, licensing, and organization ownership provide useful support. The remaining maintenance evidence is stale, so pinning this beta carries substantial upgrade and support risk.
43%
Total Score
50
100
71
83
The package has 62 releases since February 2018, but none in the last 12 months and its latest release was in November 2019. This long release gap is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers during the last three months. This supports the broader evidence that development has stopped.
There were no new or closed issues or pull requests in the last month, while four issues and three pull requests remain open. This indicates unresolved maintenance work and no visible current response.
Composer is used as a build tool, but no security scanning tools are reported. The missing scanning is a modest repository hygiene gap, not evidence that the package cannot be maintained.
The repository has no security policy. That weakens vulnerability-reporting transparency, though the absence alone is less serious than the observed lack of recent development.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
drupal/entity Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.