Unfit to use for a new dependency because the package is deprecated in favor of dft/silverstripe-modern. Its repository is not archived and the package is documented, but it has had no release in almost two years and no commits in the last three months.
20%
Total Score
75
100
71
83
Packagist marks the entire package as abandoned and names dft/silverstripe-modern as its replacement. This is a direct indication that new projects should not depend on this package.
The package has 34 releases since 2018, but none in the last 12 months; its latest release was in September 2024, almost two years ago. The long release gap is concerning for a theme with framework and module dependencies.
The repository recorded zero commits and zero active maintainers in the last three months. Although the repository was pushed in November 2024, current maintenance activity is absent.
Composer is used as a build tool, but the repository has no security scanning tools. The missing scanning is a hygiene gap, though it is secondary to the package's explicit abandonment.
The repository has no security policy. That weakens vulnerability-reporting transparency, particularly for a package that is already showing limited recent maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/framework Version ^4 || ^5 | — | — |
i-lateral/silverstripe-deferedimages Version ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.