TYPO3 CMS Extension to integrate jobs from Personio Recruiting API
74%
Total Score
caution
Usable with caveats: recent maintenance is concentrated in one contributor and the repository has no security policy.
All recent commits come from one contributor, creating handoff risk. Organization ownership provides some maintenance capacity, but no second active contributor is shown.
There were 15 commits in the last three months, but all were made by one active maintainer; this indicates activity with limited contributor depth.
The repository has no SECURITY.md or other detected security policy, leaving vulnerability reporting and handling less transparent.
Version 0.7.1 is not a stable-major release, so API evolution remains more likely than for a 1.x package, although it is not a prerelease and recent releases show stability.
All four workflows were analyzed, all 25 action references are pinned, and no untrusted checkout or script-injection trigger was found. High-confidence template-injection findings in the release workflow remain a hygiene concern, while the low-confidence cache-poisoning finding is not independently decisive.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cuyz/valinor Version ^2.0 | — | — |
typo3/cms-core Version ^13.4 || ^14.3 | — | — |
symfony/console Version ^7.4 || ^8.0 | — | — |
psr/http-message Version ^1.0 || ^2.0 | — | — |
brotkrueml/schema Version ^3.0 || ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.