The package has recent releases, a current repository, and release notes for this version. Maintenance is concentrated in one contributor, and the repository has no security policy or scanning tools.
78%
Total Score
75
94
50
All 6 commits in the last 3 months came from one contributor, leaving maintenance dependent on a single active individual. The repository is user-owned rather than organization-owned, so there is no provided backing signal to compensate for this concentration.
Composer build tooling is present, but no security-scanning tools were detected. This is a modest transparency and maintenance gap for a Magento extension with substantial application code.
The repository has no security policy. That weakens the project's disclosure and maintenance transparency, though it is not severe enough to outweigh the recent activity and releases.
No GitHub Actions workflows were present to audit, so the audit found no workflow risks but also provides no evidence of automated build or security controls. This is a limited hygiene gap rather than a severe concern.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.