The package includes tests, release notes, a clear README, and only three runtime dependencies. Organization backing helps, but recent work comes from one contributor and the workflow leaves all 11 actions unpinned.
68%
Total Score
75
100
81
83
The project has existed for about five years with 12 releases, but only one release in the last 12 months indicates a slow current cadence.
One contributor made all two recent commits, leaving no demonstrated second active contributor. Organization ownership offers some handoff capacity but does not remove the observed concentration.
The repository had two commits in the last three months, showing recent activity but a low maintenance volume.
Composer is used for builds, but no security-scanning tool was detected. For a small PHP plugin this is a hygiene gap, not evidence of abandonment.
The repository has no security policy, leaving vulnerability reporting expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cakephp/cakephp Version ^4.2 || ^5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.