The package has a clear README, tests, changelog, and an explicit GPL-2.0-or-later license. The linked organization-backed project is documented, but its security and ongoing maintenance signals do not support a dependable long-term dependency.
15%
Total Score
0
71
50
The package has 26 releases but none in the last 12 months; its latest release was published in May 2022. This supports a strong abandonment concern for a security-focused dependency.
The repository recorded zero commits and zero active maintainers in the last 3 months. Together with the archived status, this provides no evidence of ongoing maintenance.
The linked repository is archived and was last pushed about 7 years ago, indicating the project is no longer maintained. Organization backing does not offset an explicitly archived source repository.
The linked repository has no security policy. For a package that provides intrusion detection, this is a meaningful transparency and vulnerability-reporting gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
dmk/mklib Version >=3 | — | — |
typo3/cms Version ~6.2 || ~7.6 || ~8.7 | — | — |
digedag/rn-base Version >=1.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.