The template includes a README, release notes for this version, and a clear create-project workflow. Its single maintainer, minimal repository, absent security policy, and lack of security scanning leave limited evidence of ongoing project support.
46%
Total Score
50
83
75
Only one registry account has publish access. The repository is organization-owned, so a short registry maintainer list is not inherently concerning, but it still provides limited evidence of release resilience.
The latest release was published in June 2021, with no releases in the following 12 months and no newer release observed by the assessment date. This is a substantial abandonment concern despite a previously regular release interval.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating no recent maintenance capacity.
The repository has 1 star, 0 forks, and 1 watcher. Low popularity is only supporting evidence, but it provides little external sign of adoption or community support.
Composer is used as the build tool, which fits the package ecosystem, but no security-scanning tools were detected. The missing scanning is a modest supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.0 | — | — |
phpmv/ubiquity Version ^2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.