Its clear licensing, small dependency surface, and organization-backed repository support straightforward adoption. The lack of security scanning and a security policy leaves transparency weaker, while the package remains a narrowly scoped generated translation artifact.
68%
Total Score
75
100
79
83
The package has a long history with 53 releases, but only one release in the last 12 months, indicating a much slower current cadence than its earlier median interval of about 5 days.
There were no commits and no active maintainers during the last three months, which is the clearest evidence that current maintenance has slowed.
Composer is used for the build, but no security scanning tools were detected. For a small generated translation package this is a hygiene weakness, not a severe adoption blocker.
The repository has no security policy, reducing transparency about vulnerability reporting and maintainer response expectations.
Version 0.0.53 is not a stable-major release, but it is not marked prerelease and recent releases contain no prerelease versions, so this is only a modest maturity concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.