This release has strong evidence of ongoing project activity: it is a stable version, has 51 releases over roughly 3.6 years, 18 releases in the last 12 months, a recently pushed non-archived repository, and organization backing. However, Packagist marks the package as abandoned and names a replacement package, which is a decisive dependency-risk concern even though the linked repository remains active. Maintenance is also concentrated in one contributor, and the package and repository lack tests, changelogs, security scanning, and a security policy. Developers should prefer the specified replacement unless they have a documented reason to depend on this abandoned package.
28%
Total Score
88
100
75
90
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
craftcms/cms Version 5.10.14 | — | — |
vlucas/phpdotenv Version 5.7.0 | — | — |
craftcms/ckeditor Version 5.7.0 | — | — |
nystudio107/craft-vite Version 5.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.