Extension Nextras/ORM
45%
Total Score
unhealthy
Risky: no release or commit activity since March 2022.
The latest release was published in March 2022, with no releases in the following four years and six months. This is strong evidence of abandonment risk despite the package's long history and 82 releases.
The repository recorded zero commits and zero active maintainers in the three months before collection. That confirms there is no recent maintenance activity to offset the stale release history.
Only one registry account has publish access, which limits publishing resilience. The organization-owned repository provides some backing context, so this is a supporting concern rather than a severe risk on its own.
Composer is used for the build, but no security scanning tools were detected. This weakens repository hygiene, though it is secondary to the prolonged lack of maintenance.
The repository has no security policy. That reduces transparency for reporting and handling vulnerabilities, with no provided evidence of an alternative process.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nette/di Version ~3.0 | — | — |
nextras/orm Version ~4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.