MIT licensing, a focused dependency set, and organization backing make the package straightforward to evaluate. Its README and release notes help, but the repository has no security policy or scanning tools.
60%
Total Score
75
100
92
83
This is the only release, published 609 days ago, with no releases in the last 12 months. That limits evidence of ongoing maintenance and makes the package look like a potentially unmaintained snapshot.
The repository recorded no commits and no active maintainers in the last 3 months. For a package already at least 609 days old, this is meaningful evidence of stalled maintenance.
The repository has no security policy and no security scanning tools. This is a transparency and maintenance gap, although it is less severe than evidence of malicious behavior or a compromised release.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
hyva-themes/magento2-default-theme Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.