The alpha prerelease status and absence of security scanning reduce confidence in ongoing support. The organization-owned repository and explicit GPL license provide useful accountability.
44%
Total Score
50
50
75
The latest release was about 4 years and 10 months ago, with no releases in the last 12 months. This is strong evidence of stalled maintenance, despite a history of nine releases.
The repository recorded zero commits and zero active maintainers over the last 3 months, consistent with the long release gap and increasing abandonment risk.
The repository has no stars or forks and only three watchers. Popularity is not required for health, but these numbers provide little supporting evidence of active community use.
Composer build tooling is present, but no security-scanning tools were detected. This is a modest transparency and maintenance gap for a package intended for application use.
The linked repository has no security policy. For a small widget this is a limited gap, but it leaves vulnerability-reporting expectations unclear.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
cmsgears/module-core Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.