Designer module for DVelum
43%
Total Score
unhealthy
Risky: no releases or commits since August 2021 indicate prolonged abandonment.
The package has had no release in nearly five years, despite nine releases overall; this long gap is strong evidence of abandonment risk.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the prolonged release gap and limited maintenance capacity.
The package declares GPL-3.0 and includes a license file, so it is licensed; the detected MIT file belongs to a vendored CodeMirror path and may represent that component rather than the package as a whole.
The repository has no security policy, reducing transparency about how vulnerabilities are reported and handled; the absence of recent maintenance makes this gap more meaningful.
No GitHub Actions workflows were present, so the audit found no workflow-specific hazards; this also provides no evidence of automated build or release controls.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
dvelum/dvelum Version ^3.0 | — | — |
oomphinc/composer-installers-extender Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.