The BSD-3-Clause declaration and focused 53-file artifact provide basic transparency, with only one runtime dependency. The lack of tests, changelog, security scanning, and recent project activity leaves maintenance and update risk high.
34%
Total Score
0
100
58
75
This is a single-release package published in May 2014, with no releases in the last 12 months and roughly 12 years since publication. That strongly indicates abandonment risk.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the package's long release gap and providing no evidence of ongoing maintenance.
The published artifact has no README, tests, or changelog, and the repository also reports no tests or changelog. The missing tests and changelog reduce confidence in maintenance and change tracking for this library.
The repository uses Composer for builds, which supports reproducible package management, but it has no security scanning tooling. The tooling is therefore a modest positive with a remaining security-hygiene gap.
The linked repository is not marked archived, which is a small positive, but its last push was in May 2014 and does not offset the lack of recent activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
crisu83/yiistrap Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.