The source remains organized, licensed, and recently published, with tests and a clear compatibility guide. However, this release line should not be adopted when its registry replacement is available.
20%
Total Score
75
81
50
Packagist marks the entire package as abandoned and names restruct/silverstripe-focuspointcropper as its replacement. This is a direct adoption warning despite the otherwise current release.
The repository recorded zero commits and zero active maintainers in the last 3 months. The recent registry release and issue activity provide some context, but this still indicates limited current development activity.
Composer is used as a build tool, but no security scanning tools were detected. The missing scanning is a modest hygiene gap rather than evidence of abandonment.
The repository has no security policy. This reduces transparency for vulnerability reporting, although it is secondary to the package's explicit abandonment.
The single workflow was fully analyzed with no detected audit findings or untrusted execution paths. All 4 action references are unpinned, which weakens build reproducibility and supply-chain hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jonom/focuspoint Version ^5 || ^6 | — | — |
silverstripe/framework Version ^5 || ^6 | — | — |
restruct/silverstripe-simpler Version ~0.2 || ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.