The MIT license, focused dependency set, and release notes provide useful transparency. The repository matches the package and is not archived, but its long-term inactivity leaves substantial maintenance risk.
38%
Total Score
25
100
83
75
The last release was nearly 12 years ago, with no releases in the last 12 months. Four releases over the package's lifetime show some history, but not ongoing maintenance.
The repository has had zero commits and zero active maintainers in the last three months, consistent with the nearly 12-year release gap and indicating a strong abandonment risk.
One registry publisher is responsible for the package, which limits resilience if that maintainer stops responding. The repository is user-owned, so this is a real capacity concern rather than organization-backed redundancy.
The repository has no security policy, leaving no documented path for reporting vulnerabilities or coordinating fixes. This adds transparency risk for a package that communicates with FileMaker Server.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
soliantconsulting/simplefm Version 2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.