The README is present and installation has no lifecycle scripts, but the pre-1.0 version and 20 runtime dependencies make adoption harder. The repository could not be found, so maintenance and provenance cannot be verified.
15%
Total Score
50
50
100
Packagist marks the entire package as abandoned, with no replacement specified. That is a severe adoption and maintenance risk for a new dependency.
The package has 20 releases but none in the last six years, with the latest release on April 4, 2020. This strongly indicates inactive maintenance.
The package declares 20 runtime dependencies, including many Flood components and several third-party libraries. This increases transitive maintenance and compatibility exposure.
Version 0.4.11 is not a stable major release, so API compatibility may be less predictable; the long release gap further limits confidence in future support.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.6.2 | — | — |
flood/captn Version ~0.1.2 | — | — |
symfony/console Version ^4.0 | — | — |
erusev/parsedown Version ^1.7 | — | — |
flood/component-cdn Version ~0.3.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.