The MIT license, release notes, and repository tests provide useful transparency. Maintenance has stopped and no security policy is published, leaving this dependency abandoned and difficult to support safely.
8%
Total Score
0
40
50
Packagist marks the entire package as abandoned, with no replacement specified. This is a direct warning against adopting the package, although the specific release is not separately withdrawn.
The latest release was published nearly 9 years ago, with no releases in the last 12 months. The long release gap materially increases abandonment and compatibility risk.
The repository recorded no commits and no active maintainers in the last 3 months. Together with the archived state, this confirms that maintenance has stopped rather than merely slowed.
The source repository is archived and was last pushed about 7 years ago. Archival strongly indicates the project is no longer maintained.
The repository has no published security policy. This is a transparency and response gap, especially for a dependency that has not been maintained recently.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
latte/latte Version ~2.4 | — | — |
nette/forms Version ~2.4 | — | — |
nette/utils Version ~2.4 | — | — |
nette/application Version ~2.4 | — | — |
nette/component-model Version ~2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.