The package is licensed and not deprecated. Its 19 runtime dependencies increase upkeep exposure, while the repository has no security policy or scanning.
58%
Total Score
0
50
81
75
The latest release was published in November 2022, with no releases in the last 12 months and only three releases overall. This indicates a likely inactive project, though the package may be intentionally stable.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the lack of recent release activity and increasing abandonment risk.
The recipe declares 19 runtime dependencies and no development dependencies. A broad dependency bundle increases maintenance and transitive dependency exposure for consumers.
Composer is used for builds, which fits the ecosystem, but no security scanning tools were detected. This is a moderate transparency and maintenance gap rather than evidence of an unsafe release.
The linked repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This lowers project transparency but is not severe on its own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/blog Version ^3.5 | — | — |
unclecheese/display-logic Version ^2.0 | — | — |
silverstripe/recipe-plugin Version ^1.2 | — | — |
jellygnite/silverstripe-seo Version dev-master | — | — |
silverstripe/spamprotection Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.