The small repository offers little documentation, security process, or recent activity. Release notes exist for this version, and the package is neither deprecated nor archived, but the available project evidence remains weak.
42%
Total Score
0
33
50
The latest release was about 2 years 9 months ago, with no releases in the last 12 months. Only four releases exist, so maintenance appears to have stopped rather than merely slowed.
The repository had no commits and no active maintainers in the last 3 months, consistent with the long release gap and indicating a meaningful abandonment risk.
The release has no README, tests, or changelog, although release notes exist for version 0.4.0 and the absence of tests or a changelog in a published artifact is normal. Missing consumer documentation is still a modest transparency gap for a helper library.
The linked repository is named potential-doodle rather than firesphere/module-helpers, and the package name was not found in its README. That weakens confidence that the repository is the package's intended source.
The linked repository has no security policy, leaving no stated process for reporting or handling vulnerabilities. This is a transparency and maintenance weakness, though it is not evidence of malicious behavior.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phptek/sentry Version ^4|^5 | — | — |
silverstripe/recipe-cms Version ^4|^5 | — | — |
jonom/silverstripe-betternavigator Version ^5|^6 | — | — |
jonom/silverstripe-environment-awareness Version ^2|^3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.