Unfit to use because this package is marked abandoned on Packagist and points to a replacement package. The repository is active and the release is recent, but those positives do not outweigh the registry-level withdrawal of this package.
22%
Total Score
50
100
86
75
Packagist marks the entire package as abandoned and names wakeworks/privacyembed as the replacement. Although the release is recent, depending on an abandoned package creates avoidable maintenance and continuity risk.
The source repository is owned by an organization, which provides some backing and potential maintenance handoff capacity. However, the registry package namespace differs from the repository owner and the package is explicitly abandoned.
All commits in the last 3 months came from one contributor, giving the project a concentrated maintenance base. The organization-owned repository provides some handoff capacity, but no second active contributor is shown.
The repository received 1 commit in the last 3 months, with 1 active maintainer. This is recent activity, though limited in volume.
The repository has no SECURITY.md policy. This is a transparency gap for reporting vulnerabilities, though the absence is less decisive than the package-level abandonment status.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silverstripe/admin Version ^3 | — | — |
silverstripe/framework Version ^6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.