The small dependency set, matching source tree, and clear MIT licensing make the release straightforward to inspect. Its limited security practices leave little visible resilience.
43%
Total Score
67
100
67
50
The package has 30 releases, but its latest release was in October 2018 and it has had no releases in the last 12 months. This long period without publishing indicates substantial abandonment risk.
The registry has one publishing maintainer, which is a limited publishing base, though the organization-backed repository provides some context and reduces concern about individual ownership alone.
There are no open issues or pull requests and no recent issue or pull-request activity. Combined with the old last push, this is consistent with a dormant project.
The repository has only 1 star and 1 fork, indicating limited external adoption and review. Popularity is supporting evidence, so this adds modest concern rather than determining the verdict.
Composer is used for builds, but no security-scanning tooling is present. This is a transparency and maintenance gap, although it is not evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
philo/laravel-blade Version ^3.1 | — | — |
helsingborg-stad/acf-export-manager Version >=1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.