Documentation, tests, licensing, and release notes are present, with an organization-backed repository. The package has had no registry release in about 8 years and no commits in the last 3 months. No security policy is published, adding a smaller transparency concern.
54%
Total Score
75
80
50
The latest release was published about 8 years ago, with no releases in the last 12 months. This is a substantial maintenance concern for a dependency, despite the package having a multi-year release history.
The repository recorded 0 commits and 0 active maintainers in the last 3 months. That supports an abandonment concern, although the repository was pushed more recently than the last package release.
The repository has no security policy. This is a transparency and maintenance gap, but it is secondary to the package's long release inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ~1.11 | — | — |
silverstripe/admin Version ^1 | — | — |
silverstripe/crontask Version ^2 | — | — |
silverstripe/framework Version ^4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.