The MIT license, README, tests, and matching source repository provide useful transparency. No release or repository commit activity has appeared since October 2016, leaving this starter application a poor choice for a new dependency.
44%
Total Score
50
88
83
The package has existed for about 10 years but has had no release in roughly 9 years, with zero releases in the last 12 months. Its three releases were concentrated within two days, indicating prolonged stagnation.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the package's long release gap and increasing abandonment risk.
Composer build tooling is present, but no security scanning tooling was detected. That is a modest hygiene gap rather than a severe risk.
The repository has no security policy, reducing transparency for reporting and handling vulnerabilities. This is a secondary concern compared with the much longer maintenance gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
cakephp/cakephp Version 3.3.* | — | — |
cakephp/migrations Version ~1.0 | — | — |
wyrihaximus/twig-view Version ^3.3 | — | — |
cakephp/plugin-installer Version * | — | — |
mobiledetect/mobiledetectlib Version 2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.