The stable version and single runtime dependency keep the package straightforward to consume. Maintenance visibility is too weak to support a dependable new dependency.
40%
Total Score
50
100
75
83
The latest release was in January 2019, with no releases in the past 12 months. This long release gap is a substantial abandonment concern despite the package having four releases overall.
The repository had zero commits and zero active maintainers in the past three months, reinforcing the evidence of prolonged inactivity rather than a merely slow release cadence.
The repository name does not exactly match the package name, and the README could not be checked for a package mention. This weakens transparency about whether the linked repository is the package's authoritative source.
The repository has no security policy. This is a transparency and maintenance gap, though it is less significant than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
papaya/cms-core Version ^6.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.