Usable with caveats: the package is backed by the matching Reno CMS organization and is not deprecated or archived, but it has had no commits in about four months. Documentation and security-maintenance coverage are also thin, so confirm it fits your needs before adopting it.
58%
Total Score
75
100
75
83
The published artifact has no README, while the repository also reports no tests or changelog. Missing tests and changelog are not expected in every published artifact, but the lack of consumer documentation is a genuine usability and transparency gap for a CMS integration package.
The package is young, with four releases over about 10 days, but no release has appeared since May 8, roughly four months before collection. That short history and subsequent silence leave maintenance continuity uncertain.
The repository recorded zero commits and zero active maintainers during the last three months, despite the package being only about 140 days old. This is the strongest evidence of possible maintenance slowdown.
Composer build tooling is present, but no security scanning tools are reported. That is a maintenance and transparency gap, though it is not by itself evidence that the package is unsafe.
The repository has no security policy. This weakens vulnerability-reporting transparency, although the package is organization-backed and the absence is not independently severe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
renocms/cms Version @dev | — | — |
laravel/framework Version ^12.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.