Healthy and actively maintained, with clear ownership and frequent releases. The main caveats are that all recent commits come from one contributor and the repository has unresolved issues without recent closures.
78%
Total Score
75
100
83
100
The package includes a README and changelog, and repository releases are used, but neither the artifact nor repository contains tests. For a Craft CMS plugin this is a real maintenance-transparency gap, despite the otherwise documented structure.
One contributor made all 11 commits in the last 3 months, creating a concentrated bus factor. The organization-owned repository provides some handoff capacity, but no second active contributor is evidenced.
The repository received 5 new issues in the last month but closed none, and it has 9 open issues plus 1 open pull request. Unresolved incoming work is a maintenance concern, although recent commits and releases provide some compensation.
The repository has 2 stars, 2 forks, and 2 watchers, indicating limited public adoption. Popularity is only supporting evidence, so this lowers confidence in broad community validation but is not itself a major health defect.
The repository uses Composer for builds, which supports reproducible project packaging, but no security-scanning tool is reported. This is a modest transparency and hygiene gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
verbb/auth Version ^2.0.35 | — | — |
verbb/base Version ^3.0.0 | — | — |
craftcms/cms Version ^5.0.0 | — | — |
nystudio107/craft-plugin-vite Version ^5.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.