Usable with caveats: it is a licensed, stable package with a matching repository and a recent release, but maintenance appears slow and has had no commits or active maintainers in the last three months. The small project also has no security scanning or security policy.
64%
Total Score
50
81
75
The package has been maintained since June 2021 and published two releases in the last 12 months, but its median release interval is about 198 days, indicating a relatively slow cadence.
The repository recorded zero commits and zero active maintainers during the last three months, which raises a maintenance and abandonment concern despite the recent release.
The repository has 12 stars, 4 forks, and 3 watchers, indicating a small user base. This is supporting caution rather than a severe concern because the package is clearly linked to its own repository and has recent release evidence.
Composer is used as the build tool, but no security scanning tools were detected. For a small package this is a hygiene gap rather than evidence that the release is unsafe.
The repository has no security policy, leaving vulnerability reporting and handling practices undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/cms Version ^6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.