The package has no README and minimal repository adoption, while no security policy is provided. It is not deprecated or archived, and its MIT declaration and small dependency set reduce adoption friction.
42%
Total Score
100
100
63
75
This is the only release, published nearly six years ago, with no releases in the last 12 months. That strongly suggests abandonment risk for a package developers may need to maintain.
The repository is not archived, but it was last pushed in March 2021, more than five years ago. Its unarchived status is reassuring but does not offset the long period without visible updates.
The published artifact has no README, which makes integrating this October CMS plugin harder. Missing tests and a changelog are normal for published package artifacts and do not add a concern here.
The repository has one star and one fork, providing little evidence of broad adoption or community support. Low popularity is supporting evidence rather than a health verdict by itself.
The repository provides no security policy, reducing transparency about how vulnerabilities would be reported. This is a hygiene gap, not evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.