Its small artifact is clearly licensed and has a simple dependency profile. The repository shows no commits or active maintainers in the last three months, and this is still a beta release; confirm ongoing upstream work before adopting it.
68%
Total Score
67
100
88
75
The repository recorded zero commits and zero active maintainers in the last three months. This conflicts with the package's strong release history and materially raises maintenance uncertainty.
There were no new or closed issues or pull requests in the last month. Because issue counts are otherwise unavailable, this is limited evidence but does not demonstrate active project discussion.
Composer is used for builds, but no security-scanning tools were detected, leaving a modest repository hygiene gap.
The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities.
The assessed release is beta1, so it may change incompatibly before stabilization. Recent prereleases represent only 10% of releases, which partly offsets but does not remove that concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
drupal/core-file-security Version 12.0.0-beta1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.