Its small scope and organization backing reduce the concern from limited project activity. The package has no tests, changelog, or security policy, so ongoing maintenance and review are less transparent.
55%
Total Score
75
100
81
88
The artifact has no README, tests, or changelog, and the repository also reports no tests or changelog. The missing tests and change history reduce transparency for a package intended to provide an import implementation.
This is the only release, published about six years ago, with no releases in the last 12 months; that limits evidence of continued maintenance.
There were no commits and no active maintainers in the last three months, so current maintenance capacity is not demonstrated despite the repository having been pushed previously.
Composer build tooling is present, but no security scanning tools are reported, leaving a modest review-hygiene gap.
The repository has no security policy, which makes vulnerability reporting and response expectations less clear.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^101.0.0 | — | — |
creativestyle/magesuite-importer Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.