The package is clearly licensed and its source repository matches the package, but it shows little evidence of ongoing care. Treat this beta release as a liability unless you can maintain the integration yourself.
38%
Total Score
0
71
50
Only two releases were published, both in October 2019, with none in the past 12 months; nearly seven years without a release is strong abandonment evidence.
There were no commits and no active maintainers in the past three months, consistent with a project that has been inactive for years.
Composer build tooling is present, but no security-scanning tooling is reported; this is a secondary hygiene gap beside the much larger maintenance concern.
The repository has no security policy, reducing vulnerability-reporting transparency for a package that integrates with AWS and Cloudflare services.
The assessed version is still a prerelease beta and all recent releases are prereleases, so the package has not demonstrated a stable release path.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
aws/aws-sdk-php Version ^3.87 | — | — |
silverstripe/cms Version ^4.0 | — | — |
guzzlehttp/guzzle Version ~6.0 | — | — |
silverstripe/vendor-plugin Version ^1.0 | — | — |
silverstripe/staticpublishqueue Version ^4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.