The package has clear licensing, a usable README, recent release notes, and organization backing. Its slow release cadence, no commits in the last three months, and absent security scanning leave maintenance and review concerns.
64%
Total Score
75
100
88
83
The package has been published since September 2020 and released twice in the last 12 months, but its median release interval is about 376 days, indicating a slow maintenance cadence.
The repository recorded zero commits and zero active maintainers in the last three months, which is a meaningful maintenance warning even though a release was published during the broader period.
Composer is used for builds, but no security scanning tools are configured, leaving dependency and source review less automated.
The repository has no security policy, so it does not clearly document how vulnerability reports should be handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^13.4 || ^14.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.