The BSD-3-Clause license, matching license file, clear README, and release notes improve transparency. Its small dependency footprint and lack of install scripts reduce adoption risk.
58%
Total Score
0
100
75
88
The package has had only three releases since 2014, with no release in roughly seven years and none in the last 12 months. This is a substantial maintenance concern for a dependency.
The repository recorded no commits and no active maintainers in the last three months, consistent with the long gap since the latest release. This raises abandonment risk.
Composer is used for build or dependency tooling, but no security scanning tools are configured. The missing scanning is a minor hygiene gap rather than a strong health concern for this small package.
The repository has no security policy, reducing transparency about vulnerability reporting and response. This matters, although the package is small and otherwise clearly documented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
kartik-v/yii2-krajee-base Version >=1.9 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.