38%
Total Score
unhealthy
Risky: no release or repository activity since 2017, with no tests or security policy.
The latest release was in April 2017, about 9 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk despite 20 historical releases.
Seven runtime dependencies, including several Yii extensions, create a meaningful dependency surface for a small package. No development dependencies are declared, so the release provides little visible testing or maintenance support.
A README is present, but it is only 841 characters and contains largely empty usage and documentation sections. The absence of tests and a changelog in the published package is normal packaging practice, not a defect by itself.
The registry namespace and repository owner match, and the repository is user-owned rather than organization-backed. This is consistent ownership evidence, but it indicates limited organizational backing.
There are no open issues or pull requests and no recent issue or pull-request activity. While this could mean stability, alongside the 2017 last release it is more consistent with a dormant project.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version * | — | — |
yiisoft/yii2-jui Version ~2.0.0 | — | — |
yii2mod/yii2-enum Version * | — | — |
yiisoft/yii2-bootstrap Version * | — | — |
yii2mod/yii2-moderation Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.