The focused four-file plugin has clear setup instructions and a documented release note. Its lone maintainer, minimal repository activity, absent tests, and no security policy make long-term support uncertain.
39%
Total Score
50
100
75
75
The package has had no release in more than 9 years: its latest release was February 14, 2017, despite four total releases. This is strong evidence of abandonment risk.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the package's long release silence and limited evidence of ongoing maintenance.
There were no new or closed issues or pull requests in the last month, with one issue still open. This provides no sign of current maintenance or responsiveness.
The repository has 5 stars, 0 forks, and 1 watcher. Low adoption is supporting evidence of limited project maturity, though popularity alone does not determine health.
Composer is used for builds, which fits the package ecosystem, but no security scanning tooling is present. The missing scanning is a modest hygiene gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cakephp/cakephp Version ~3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.