The README and declared MIT license provide basic adoption and licensing information. There is no security policy, and the project offers little evidence of ongoing maintenance or review.
36%
Total Score
50
64
75
This package has one release, published about eight years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a dependency intended to remain compatible with its ecosystem.
There has been no new issue or pull-request activity in the last month, and one issue remains open. This is consistent with a project that is no longer actively maintained.
Composer is used for builds, but no security-scanning tooling is present. The missing scanning is a modest transparency and maintenance concern rather than evidence of an unsafe release.
The repository is not archived, which is a positive sign, but its last push was about eight years ago and does not offset the clear age of the project.
The repository has no published security policy, leaving no documented path for reporting or handling vulnerabilities. This matters more for a server-performance package that integrates deeply with an application.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
october/cms Version ~1.0 | — | — |
october/rain Version ~1.0 | — | — |
october/system Version ~1.0 | — | — |
october/backend Version ~1.0 | — | — |
scil/laravel-fly Version v0.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.