The organization-backed repository matches the package, has a usable README, and published release notes for this version. Its modest security hygiene and lack of recent commit activity add maintenance risk, though the current release cadence is reassuring.
70%
Total Score
75
50
93
50
This recipe declares 15 runtime dependencies, so its health depends on a comparatively broad dependency set. That is expected for an installer recipe but increases the surface area that must remain compatible.
The repository recorded no commits and no active maintainers in the last 3 months. The June release and push provide some compensating evidence, but the recent inactivity still weakens confidence in ongoing maintenance.
Composer build tooling is present, but no security scanning tool was detected. This is a modest transparency and supply-chain hygiene gap, not evidence that the release is unsafe.
The linked repository has no security policy. For a small recipe this is a limited concern, but it leaves vulnerability-reporting expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jonom/focuspoint Version ^6.0.0 | — | — |
silverstripe/linkfield Version ^5.2.0 | — | — |
silverstripe/recipe-cms Version ^6.2.0@stable | — | — |
silverstripe/login-forms Version ^6.2.0@stable | — | — |
silverstripe/recipe-plugin Version ^2.1.0@stable | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.