The release is recent and stable, with two active contributors sharing the recent work. Dependencies are limited, and the repository is not archived, but its small evidence base leaves less assurance for long-term support.
68%
Total Score
100
100
79
50
No README is included, which makes integration harder for a fieldtype addon; absent tests and changelog are normal packaging gaps and do not materially lower health here.
The repository name does not match the package name, and no README mention was available, so the link does not clearly establish that the repository belongs to this package.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest security-process gap.
The repository has no security policy, reducing transparency around vulnerability reporting and response.
The workflow audit completed cleanly and scopes permissions at job level, but its one action reference is unpinned, leaving avoidable build-reproducibility risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
statamic/cms Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.