The last release was over eight years ago, and the repository has had no commits in the past three months. Clear documentation, a matching source repository, and an organization owner provide useful transparency, but the inactive maintenance makes this a dated dependency.
55%
Total Score
63
50
79
83
The latest release was over eight years ago, with no releases in the last 12 months. That is strong evidence of an aging project and raises abandonment concerns.
There were zero commits and zero active maintainers in the past three months. Combined with the old release, this materially increases abandonment risk.
Nine runtime dependencies create a meaningful maintenance surface, including several related Mouf and Drupal components, but no unusually large dependency footprint is shown.
There have been no new or closed issues in the past month and one open pull request. This is consistent with a quiet project and offers little evidence of ongoing support.
The repository uses Composer, but no security scanning tool was detected. That is a modest transparency and maintenance-hygiene gap, not a standalone reason to reject the package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version * | — | — |
mouf/mvc.splash-common Version ~5.0 | — | — |
mouf/security.rightsservice Version ~2.0 | — | — |
mouf/html.utils.weblibrarymanager Version ~3.0 | — | — |
mouf/security.rightsservice-splash Version ~4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.