The package is well documented, tested, licensed, and has recent commits. Its short track record, single-contributor history, missing security policy, and loose workflow pinning leave limited operational margin.
64%
Total Score
75
75
67
This release is from a package that is less than one day old, with only two releases; the recent publication activity is encouraging but provides little evidence of long-term maintenance.
All nine recent commits came from one contributor, so maintenance depends entirely on a single person.
The repository name matches the package, which is reassuring, but its README does not mention the package name, leaving a modest transparency gap.
The repository has no security policy, leaving vulnerability reporting and response expectations unspecified for a package that integrates with Moodle course creation.
Version v0.1.2 is not marked as a prerelease, but the 0.x major version signals an immature compatibility track and likely API change risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
moodle/moodle Version ^5.2 | — | — |
moodle/composer-installer Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.