The README, tests, and small dependency surface make the package straightforward to inspect. Maintenance has effectively stopped, and the release has no license declaration or license file, leaving long-term adoption and reuse concerns.
38%
Total Score
33
100
67
88
The latest release was published in April 2016, with no releases in the past 12 months and only three releases overall. This is strong evidence of abandonment risk for a package developers may need to maintain themselves.
There were no commits and no active maintainers in the past three months, consistent with a project that has been inactive for years. This materially increases the chance that compatibility issues will remain unresolved.
No license is declared, detected, or included in the package or repository. That creates a real legal and reuse barrier rather than a cosmetic metadata gap.
Only one registry account has publish access, and the repository is owned by a user rather than an organization. This indicates a thin operational and succession base, though it does not by itself prove abandonment.
The registry namespace and repository owner match, and the owner is an individual user. This supports repository ownership alignment but provides no organizational backing to offset the thin maintainer base.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/framework Version ~3.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.