Drupal 9 base install profile for CU Boulder
12%
Total Score
critical
Unfit to use: the package is deprecated, its repository is archived, and maintenance stopped years ago.
Packagist marks the entire package as abandoned, with no replacement named. This directly indicates that maintainers no longer support it as a dependency.
The repository recorded zero commits and zero active maintainers in the past three months, consistent with the archived status and showing no recent maintenance capacity.
The linked repository is archived, and its last push was about three years and two months ago. An archived source project is a severe abandonment risk even though the repository remains readable.
The package has had only three releases, with none in the past three years and six months. Its earlier roughly three-week release interval does not compensate for the prolonged halt.
Composer is used as the build tool, but the repository reports no security-scanning tooling. This is a minor hygiene gap, outweighed by the abandonment evidence.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.