Documentation and licensing are in place, while repository security coverage is thin. The project is not archived or deprecated, but its lone publisher and tiny user footprint offer little reassurance.
44%
Total Score
25
75
50
The package has 8 releases since August 2016, but none in the last 12 months and the latest release was over 8 years ago. This strongly increases abandonment risk.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long gap since the last release. There is no recent development evidence to offset the stale release history.
There were no new or closed issues or pull requests in the last month, with only one open pull request. This provides little evidence of active maintenance.
The repository has 0 stars, 1 fork, and 1 watcher, indicating a very small visible user base. Popularity is not required for health, but these numbers provide little supporting evidence of ongoing use or review.
Composer is used for builds, but no security scanning tools are configured. This is a meaningful transparency and maintenance gap for a dependency with no recent activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nnnick/chartjs Version * | — | — |
silverstripe/cms Version ~3.6 | — | — |
silverstripe/framework Version ~3.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.