Documentation, licensing, and packaging are in good shape. Maintenance evidence is dated, with no registry release in over three years and no commits in the last three months; the project is not archived or deprecated.
62%
Total Score
50
90
50
The package has 28 releases since 2014, but none in the last three years, which is a meaningful maintenance concern for a dependency even if it may be stable.
The repository recorded no commits and no active maintainers in the last three months, weakening evidence of ongoing maintenance.
The repository has no security policy, leaving vulnerability-reporting expectations and handling procedures undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
select2/select2 Version >=4.0.0 | — | — |
kartik-v/yii2-krajee-base Version >=3.0.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.