Usable with caveats: the package is stable, licensed, and clearly backed by a matching organization repository, but it has had no release in nearly six years and the repository has not been pushed in over five years. Treat it as suitable only if its older October CMS integration remains compatible.
52%
Total Score
75
71
75
The package has only three releases, all concentrated in late 2020, with no releases in the last 12 months and the latest release nearly six years ago. This is the strongest sign of possible abandonment, although the stable 1.0.4 version may be mature rather than actively evolving.
There are no open issues or pull requests and no issue or pull-request activity in the last month. A clean tracker is mildly positive, but it does not compensate for the prolonged lack of releases and source changes.
The repository has one star, one fork, and one watcher, indicating limited external adoption and review. Popularity is only supporting evidence, but this provides little independent confidence for an otherwise inactive project.
The repository is not formally archived, which preserves a path for maintenance, but its last push was over five years ago. That long period without repository updates materially raises abandonment risk.
The repository has no security policy. This is a transparency gap for a plugin, though it is less severe than the evidence of inactivity and does not by itself make the release unfit.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ~1.0 | — | — |
lorisleiva/laravel-actions Version v1.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.