CMSGate Bridge integration library
57%
Total Score
caution
Usable with caveats: no registry releases since August 2023, despite an unarchived organization-backed repository.
The package has no README, tests, or changelog, while the source repository also reports no tests or changelog. Missing tests and changelog are acceptable packaging practice here, but the missing README is a real integration gap for a library.
The package has 20 releases, but its latest registry release was August 2023 and it has had no releases in the last 12 months. The repository was pushed in August 2024, which provides some compensating evidence but does not show current release maintenance.
The repository has no open issues or pull requests and recorded no issue or pull-request activity in the last month. Combined with the release gap, this leaves little evidence of active upkeep.
Composer is used for builds, which fits the package ecosystem, but no security scanning tools are configured. The missing scanning is a modest project-hygiene weakness rather than a severe dependency risk.
The repository has no security policy. For a library containing authentication, encryption, and payment-related code, this reduces transparency about how vulnerabilities would be handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
google/recaptcha Version ^1.2 | — | — |
esas/cmsgate-core Version ~v2.2.0 | — | — |
defuse/php-encryption Version 2.3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.