MIT licensing, a matching repository, and a stable major release provide a solid baseline. The long pause in maintenance and absent security policy make future fixes less certain; pin v10.0.1 if adopting it.
58%
Total Score
75
79
50
The artifact has no README, tests, or changelog; missing tests and changelog are normal for published Packagist artifacts, but the missing README reduces consumer-facing transparency for a library package. A GitHub release exists for this version, partly compensating for the absent changelog.
The package has 75 releases since August 2017, but its latest release was in July 2024 and there were no releases in the following 12 months. This is a meaningful maintenance concern despite the historically regular release cadence.
There were zero commits and zero active maintainers in the last three months, consistent with the broader release pause. This raises abandonment and future-fix risk.
The repository uses Composer for its build, but no security-scanning tooling was detected. The missing scanner is a hygiene gap rather than evidence that the package is unsafe.
The repository has no security policy. That makes vulnerability reporting and response expectations less transparent, especially when recent maintenance activity is absent.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
inetstudio/widgets Version ^10.0 | — | — |
inetstudio/admin-panel Version ^10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.