The repository matches the package and is backed by an organization, improving traceability. The MIT license and README are helpful, but the template has seen no maintenance for about two years and three months.
42%
Total Score
50
75
50
Only two releases were published, both within about 32 minutes of each other, followed by roughly two years and three months without a release. That weak history raises abandonment risk for a starter application.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating no current maintenance capacity.
Composer is used for builds, but no security-scanning tool was detected. That is a minor hygiene concern and does not by itself establish unsafe dependency maintenance.
The repository has no security policy. This is a transparency gap, though its effect is secondary to the much stronger evidence of inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
daycry/twig Version ^1.3 | — | — |
codeigniter4/shield Version ^1.0 | — | — |
codeigniter4/framework Version ^4.0 | — | — |
codeigniter4/translations Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.