The package has seen no release or repository activity for nearly three years, which raises a substantial abandonment concern. Its CI also uses an unpinned container image, while licensing, tests, and package identity are otherwise clear.
43%
Total Score
50
100
75
75
The package has 111 releases, but none in the last 12 months; its latest release was in December 2023, nearly three years ago. The strong historical release record does not offset the prolonged current inactivity.
There were zero commits and zero active maintainers in the last three months. Combined with the last release being nearly three years ago, this is strong evidence of abandonment risk.
There were no new or merged pull requests and no issue activity in the last month. This is consistent with inactivity, although the null open-issue count limits what can be concluded about issue handling.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, so this reinforces limited external adoption but is not a primary health verdict.
The repository uses Composer, but no security-scanning tooling was detected. This is a transparency and maintenance weakness, though it is secondary to the prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.5 | — | — |
ibexa/core Version ^4.4 | — | — |
ibexa/rest Version ^4.4 | — | — |
ibexa/solr Version ^4.4 | — | — |
ibexa/admin-ui Version ^4.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.