40%
Total Score
unhealthy
Risky: releases and repository activity stopped in January 2017, leaving a strong abandonment concern.
The latest release was published in January 2017, and there have been no releases in more than nine years. This is strong evidence that maintenance has stopped, despite seven historical releases.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and leaving no evidence of current maintenance.
A README is present, but its Features and Usage sections are still marked TODO, limiting practical consumer guidance. The absence of tests and a changelog is not treated as a packaging gap.
Three issues remain open, with no new or closed issues and no pull-request activity in the last month. This adds to the lack of evidence that problems are being addressed.
The repository has no security policy, so users have no documented reporting or response process. This is a transparency gap, though it is less serious than the absence of recent maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
torfs-ict/cmsms Version ^2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.