The small, focused artifact is clearly licensed, documented, and free of install-time scripts. Its source has seen no commits or active maintainers in three months, and the last release was over nine years ago; limited adoption and no security policy add concern.
42%
Total Score
0
100
75
83
The package has only three releases, with none in the last 12 months, and its latest release was over nine years ago. This strongly increases abandonment risk despite the stable version.
The repository recorded zero commits and zero active maintainers in the last three months. That provides no evidence of ongoing maintenance capacity.
The repository has 2 stars, 5 forks, and 2 watchers, indicating limited adoption. Popularity is supporting evidence only, but it offers little reassurance alongside the stale activity.
The repository has no security policy. For a small widget this is a transparency gap rather than a severe standalone risk, but it leaves vulnerability reporting expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version * | — | — |
bower-asset/bootstrap-maxlength Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.