Healthy and suitable to use, with a short but active track record. The main caveats are that all recent commits come from one contributor and the repository lacks a security policy and explicit workflow permissions.
78%
Total Score
83
100
94
80
One contributor made all 30 recent commits, creating a genuine continuity concern. Organization ownership provides some handoff capacity, so this is a caution rather than a severe abandonment signal.
Composer build tooling is present, but no security scanning tools were detected; this is a modest transparency and maintenance gap for a package with otherwise solid CI coverage.
The repository has no security policy, leaving vulnerability reporting and disclosure expectations undocumented.
All three workflows omit top-level token permissions. No write permissions were observed, but explicitly declaring least-privilege permissions would improve workflow transparency.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
liberusoftware/theme-base Version ^2.0 | — | — |
liberusoftware/theme-support Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.