Licensing and package documentation are in place, and the repository still matches the package. Maintenance capacity is the concern: there have been no releases in nearly seven years and no recent commits, while two issues remain open.
38%
Total Score
50
100
78
75
The package has had no releases in the last 12 months, and its latest release was nearly seven years ago. Eight historical releases show it was once active, but they do not offset the prolonged release gap.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the registry's prolonged release gap. This is strong evidence of current maintenance risk.
Two issues remain open, with no new or closed issues and no pull-request activity in the last month. The small issue count is not severe by itself, but the absence of resolution activity reinforces the maintenance concern.
The repository has one star and no forks, indicating limited independent adoption. Popularity is only supporting evidence, but this offers little compensating evidence for the maintenance gap.
Composer is used as a build tool, which fits this Packagist package, but no security-scanning tools were detected. The missing scanning is a modest supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
diepxuan/module-magento Version ^0.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.