The only release is a prerelease from September 2020, and its 43 runtime dependencies create substantial upkeep burden. The package includes a license and README, but the repository could not be found for verifying current maintenance or provenance.
15%
Total Score
50
50
100
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe adoption risk because the release is not presented as maintained.
The package has only one release, on September 29, 2020, with no releases in the last 12 months. That long period without a new release strongly indicates abandonment.
The package declares 43 runtime dependencies, including many related CMS extensions and build assets. This creates a large maintenance and compatibility surface for an already abandoned package.
The assessed version is v0.1.0-alpha, and all recent releases are prereleases. This indicates an immature release line and provides no stable version to prefer.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version ^2.0.35 | — | — |
hashids/hashids Version ^4.0 | — | — |
npm-asset/luxon Version ^1.25 | — | — |
scssphp/scssphp Version ^1.0.5 | — | — |
npm-asset/jstree Version ^3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.