The repository is intact, has tests, a README, and a stable runtime dependency profile. Organization backing and matching repository metadata offer limited reassurance, but the project shows no current maintenance or security-policy support.
20%
Total Score
50
100
67
83
Packagist marks the entire package as abandoned and points to powerkernel/yii2-jeditable as a replacement. Package-level deprecation is a severe dependency risk even though the replacement is identified.
This package has only one release, published about 8 years and 9 months ago, with no releases in the last 12 months. That gives little evidence of ongoing compatibility or maintenance.
The repository recorded zero commits and zero active maintainers in the last 3 months. Combined with the old release history, this strongly indicates an inactive project.
The linked repository has no security policy. That weakens vulnerability-reporting transparency, although the package's inactivity and deprecation are the more serious concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.