There is no security policy or security-scanning tooling, leaving security maintenance less transparent. The repository is small but includes a changelog, matching README, license file, and no install-time scripts.
61%
Total Score
50
100
75
75
This package is 91 days old and has only one release, so its maintenance record is not yet established. Its recent publication is consistent with a new package rather than evidence of abandonment.
All recent commits come from one contributor, leaving maintenance dependent on a single person. The repository is user-owned rather than organization-owned, so there is no shown backing to offset that concentration.
Only one commit was recorded in the last three months, with one active maintainer. That is limited evidence of ongoing maintenance for a package this new.
The repository has no stars, forks, or watchers. This is weak supporting evidence, but popularity alone does not determine the health of a small package.
Composer build tooling is present, but no security-scanning tooling was detected, leaving a gap in ongoing security hygiene.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
craftcms/cms Version ^4.18.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.