Buyback plugin for SeAT
52%
Total Score
caution
Usable with caveats: no commits or releases for about two years raises abandonment risk.
The package has 15 releases, but none in the last 12 months and its latest release was about 2 years and 2 months ago. This established history is outweighed by the prolonged release gap.
There were no commits and no active maintainers in the last 3 months, consistent with the release gap and raising a meaningful abandonment concern. The non-archived repository and prior release history only partly compensate.
The repository has 1 star, 0 forks, and 1 watcher, providing little evidence of a broad user or contributor base. Popularity is supporting evidence, so this reinforces but does not determine the maintenance concern.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and hygiene gap rather than evidence that the package is unsafe.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This matters for a web plugin but is less severe than the maintenance gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
eveseat/web Version ^5 | — | — |
eveseat/eveapi Version ^5 | — | — |
eveseat/services Version ^5 | — | — |
eveseat/notifications Version ^5 | — | — |
recursivetree/seat-treelib Version ^2.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.