The repository has no three-month commit history, and it provides no security policy or automated security scanning. MIT licensing, tests, release notes, and organization backing improve transparency, but cannot establish long-term support yet.
62%
Total Score
75
86
75
This package was published today and has only one registry release, so there is no established release or maintenance track record yet.
There were no commits from active maintainers in the last three months. Because the repository is newly created and was pushed recently, this indicates limited history rather than clear abandonment, but support capacity is not yet proven.
The repository uses Composer but reports no security scanning tools. For a CRM handling invoices, payments, and stored passwords, the missing automated security checks are a meaningful hygiene gap.
The repository has no security policy. That leaves vulnerability reporting and response expectations unclear for a package handling business and payment-related data.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
statamic/cms Version ^6.0 | — | — |
dompdf/dompdf Version ^3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.