The package is newly released, and all recent commits come from one contributor. Tests, clear documentation, licensing, active repository status, and organization backing provide useful support, but there is no security policy or scanning evidence.
68%
Total Score
67
100
79
50
The package is 0 days old with four releases published on the same day, so there is not yet enough history to demonstrate sustained maintenance or release stability.
One contributor made all three recent commits, creating a concentrated maintenance dependency. The organization-owned repository provides some handoff capacity, but no second active contributor is shown.
Three commits occurred in the last 3 months, showing some activity, but this is a very small history for a package released today.
Composer is used for builds, which fits the package ecosystem, but no security scanning tools are configured, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no documented path for reporting or handling vulnerabilities in this integration package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=103.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.