Healthy and suitable to install, with a small maintenance-risk caveat. It has frequent recent releases, active repository work, tests, documentation, and organizational backing, but all recent commits come from one contributor and the workflow grants write permissions without a security policy.
80%
Total Score
88
100
94
80
All 19 recent commits came from one contributor, creating a real continuity risk; organizational ownership helps provide potential handoff capacity but does not replace a second active contributor.
Composer build tooling is present, but no security scanning tools were detected; this is a transparency and maintenance gap, though other repository hygiene is strong.
No repository security policy was found, leaving vulnerability-reporting expectations unclear; this is a modest transparency gap for a maintained integration.
The release workflow declares top-level write permissions, increasing the potential impact of a workflow compromise even though no dangerous workflow patterns were detected.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mautic/core-lib Version ^6.0 || ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.