It includes tests, a readable package, and no install-time scripts. Organization backing and a matching repository help, but the lack of security scanning leaves maintenance safeguards thin.
58%
Total Score
67
100
81
75
The latest release was published in June 2020, with no releases in the last six years. The package had a reasonable earlier cadence, but this long pause is a substantial maintenance concern.
The repository had zero commits and zero active maintainers in the last three months. Combined with the old latest release, this indicates a serious risk of abandonment.
Composer build tooling is present, but no security-scanning tooling was detected. This is a modest transparency and maintenance weakness rather than proof of unsafe code.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities in an access-control plugin.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cakephp/acl Version ^0.5.2 | — | — |
croogo/core Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.