The repository is small and has no security policy, while its README and package contents provide basic integration guidance. It is licensed and not deprecated or archived, but ongoing support is uncertain.
45%
Total Score
50
100
75
75
The package has only one release, published more than 11 years ago, with no releases in the last 12 months. This is strong evidence of limited ongoing maintenance.
The repository recorded zero commits and zero active maintainers in the last 3 months. Although it was pushed in August 2022, current development activity is absent.
There are two open issues and no issues or pull requests were created or closed in the last month, providing no evidence of active support.
The repository has 1 star and 2 forks, indicating a very small user and contributor footprint. Low popularity is supporting evidence of limited external maintenance capacity, not a verdict by itself.
The repository uses Composer but has no security scanning tools. Composer provides expected build tooling, while the missing scanning is a minor hygiene gap already reflected by the security-policy concern.
| Title | Versions | Severity |
|---|---|---|
CVE-2015-10018 dbrisinajumi/d2files is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 0.0.0 - 1.0.0. | 0.0.0 - 1.0.0 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
dbrisinajumi/audittrail Version 2.1.3 | — | — |
blueimp/jquery-file-upload Version 9.5.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.