Risky to adopt because Packagist marks this release's package as abandoned and points to a replacement. Recent releases and a matching active repository provide some maintenance evidence, but the deprecation is a serious supply-chain and continuity concern.
38%
Total Score
78
50
Packagist marks the entire package as abandoned and recommends bladewindui/dropmenu as its replacement. This materially undermines the package's suitability even though the repository remains active.
The repository has zero stars, forks, and watchers, providing no community adoption signal. This is a supporting weakness rather than decisive evidence for a small, recently published component.
Composer is used as the build tool, but no security scanning tools were detected. The lack of scanning is a modest process gap and does not by itself establish that the package is unsafe.
The repository has no security policy. For a small UI component this is a limited transparency gap, but it leaves no documented process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mkocansey/bladewind-core Version ^4.4 | — | — |
mkocansey/bladewind-icon Version ^4.4 | — | — |
mkocansey/bladewind-button Version ^4.4 | — | — |
mkocansey/bladewind-script Version ^4.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.