The module has a clear README, license, matching repository, and organization ownership. The latest release notes help, but no commits in the past three months and no security scanning reduce confidence in ongoing maintenance.
64%
Total Score
75
86
50
The release declares GPL-2.0-or-later and includes a license file, so it is licensed. The detected GPL-2.0 text is narrower than the declaration and warrants a small compatibility check.
The repository had zero commits and zero active maintainers in the past three months. Although the release was recent enough to show some publishing activity, this leaves ongoing maintenance uncertain.
Composer build tooling is present, but no security scanning tools were detected. For a small Drupal module this is a hygiene gap rather than a severe dependency risk.
The repository has no security policy. This weakens vulnerability-reporting transparency, although the package's small scope and recent release provide some compensating context.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.