The package has a coherent 15-file plugin structure and a clear MIT declaration. Its project is only one day old, with no tests, changelog, security policy, or scanning tools, so long-term maintenance remains unproven.
79%
Total Score
100
100
81
75
The artifact has no README, tests, or changelog. Missing tests and changelog are normal for a published PHP plugin, while the missing README is a minor consumer-documentation gap.
The package is only 1 day old with 3 releases, so there is not enough history to establish sustained maintenance. The rapid early releases are a modest positive but do not offset the limited observation window.
Composer build tooling is present, but no security scanning tools are configured. The missing scanning is a modest hygiene gap rather than evidence of unsafe maintenance.
The repository has no security policy. For a new plugin handling legal-page content, this reduces vulnerability-reporting transparency but is not by itself a dependency-blocking risk.
No GitHub Actions workflows were present, so there were no workflow risks to audit. This also means there is no observed automated build or security-checking process.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^5.0 | — | — |
shazzoo/content-studio-core Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.