The README explains installation and configuration, and the BSD-3-Clause license is clear. The focused package has no install-time scripts, but repository security practices are limited.
40%
Total Score
0
75
75
The latest release was published in August 2018, and there have been no releases in roughly eight years. This is strong evidence of abandonment for a package intended for ongoing framework use.
The repository recorded zero commits and zero active maintainers in the past three months, consistent with the long release gap and indicating no current maintenance capacity.
The repository has only 1 star, 1 fork, and 1 watcher. Popularity is supporting evidence rather than decisive, but these numbers provide little evidence of a broad support community.
Composer is used for the build, which fits the package ecosystem, but no security-scanning tooling is reported. This leaves an avoidable gap in ongoing maintenance hygiene.
The repository has no security policy. That limits transparency for reporting and handling vulnerabilities, although it is not by itself evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/cms Version >=4.0 | — | — |
silverstripe/framework Version >=4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.