The source repository is still maintained, but all recent commits come from one contributor. The MIT declaration and modest dependency set help, while the missing README and security policy reduce transparency.
62%
Total Score
75
100
67
50
The package has a GitHub release for this version, but it contains no README, tests, or changelog. The missing README reduces consumer transparency for a CMS core package, while absent tests and changelog are normal packaging gaps.
The package has had no registry release in over three years and none in the last 12 months, which raises release-maintenance concerns. The 46-release history and recent repository activity partly offset the risk.
All 3 recent commits came from one contributor, leaving maintenance dependent on a single person and increasing continuity risk.
The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities in a CMS core package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
peteryang/querylist Version ^4.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.