The repository has no commits in the last three months, and its only dependency workflow uses an unpinned action. Licensing, documentation, and package ownership are clear, but they do not offset the maintenance status.
15%
Total Score
75
64
75
Packagist marks the entire package as abandoned, with no replacement provided. This is a severe warning that the release should not be adopted for new dependencies.
The linked source repository is archived, so it is no longer an actively maintained project even though it was pushed on June 9, 2025.
The package has five releases over about five years and none in the last 12 months. The long median interval indicates a slow release cadence, which reinforces the abandonment concern.
The repository recorded zero commits and zero active maintainers in the last three months. This provides direct evidence of no recent maintenance capacity.
The single workflow was fully analyzed with no reported audit findings, but its one action reference is unpinned. The absence of a top-level permissions block is acceptable on its own; the unpinned action is a minor reproducibility concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
utexas/utnews Version ^3.0 | — | — |
utexas/utprof Version ^3.0 | — | — |
utexas/utevent Version ^3.0 | — | — |
utexas/utexas_pantheon_logs_http Version ^1 || ^2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.