The MIT license, stable versioning, small dependency set, and organization backing reduce adoption friction. The package lacks a consumer-facing README and a repository security policy, leaving integration and security-reporting details unclear.
54%
Total Score
100
100
72
75
The artifact has no README, which makes integration harder for consumers; absent tests and changelog files are normal packaging practice and do not add concern here.
The latest release was February 2021, with no releases in the last 12 months; this is a meaningful maintenance concern for a library dependency.
The repository has zero stars, forks, and watchers; popularity is only supporting evidence, but this provides no external adoption signal to offset the stale maintenance picture.
Composer is used as the build tool, but no security scanning tools were detected, leaving repository security hygiene less transparent.
The repository is not archived, but its last recorded push was in November 2022, consistent with an inactive project and adding abandonment concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
esas/cmsgate-core Version ~v1.13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.