The package includes a README, tests, changelog, license, and only two runtime dependencies. Its source has had no commits or issue activity for about 10 years, and the registry marks the package as abandoned; pinning it is not advisable for new projects.
15%
Total Score
33
100
58
75
Packagist marks the entire package as abandoned, with no distinct replacement identified. Package-level abandonment is a severe adoption risk rather than a release-specific warning.
The package has only two releases, both from February–March 2013, and none in the last 12 months. This indicates a release line that has been inactive for about 13 years.
There were zero commits and zero active maintainers in the last three months, consistent with a project that has been dormant for about 10 years. This materially increases abandonment risk.
The repository is owned by the silverstripe-archive organization, which provides some ownership context but also aligns with the observed lack of current activity.
There were no new or closed issues and no merged pull requests in the last month, while 14 issues and 3 pull requests remain open. This suggests maintenance has stopped.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/cms Version ~2.3 | — | — |
silverstripe/framework Version ~2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.