Clear licensing, tests, package documentation, and organization ownership provide useful transparency. The last release and repository activity were about nine years ago, with no active maintainers recently; the missing security policy adds a smaller concern.
35%
Total Score
50
69
75
The package has only three releases and none in the past nine years, indicating a prolonged lack of release maintenance. This materially raises abandonment risk for a dependency.
There were no commits and no active maintainers in the past three months, consistent with the long release gap. This is strong evidence that the project is currently unattended.
The project uses Composer for builds, which is appropriate for a Packagist package. No security scanning tools were detected, reducing ongoing vulnerability-monitoring evidence.
The repository is not archived, which preserves a path for future maintenance. However, its last push was about nine years ago, so the unarchived status does not offset the inactivity.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency gap, though it is less serious than the maintenance inactivity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
samsonphp/upload Version * | — | — |
samsoncms/material Version * | — | — |
samsoncms/application Version * | — | — |
samsonos/php_jquery_ui Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.