The package is clearly documented, licensed, and published without install-time scripts. Its small, organization-backed project has only 95 days of history and one active contributor, so long-term maintenance is not yet proven.
68%
Total Score
83
100
88
83
This is a young package with one release over 95 days and no established release cadence, leaving limited evidence of sustained maintenance.
Three commits in the last three months show some activity, but the small volume offers only limited evidence of ongoing maintenance.
Composer build tooling is present, but no security scanning tool was detected, leaving a modest transparency gap for dependency health.
The repository has no security policy, so vulnerability-reporting expectations are not documented; this is a maintenance and transparency gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
getkirby/cms Version ^5.4 | — | — |
getkirby/composer-installer Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.