The stable 1.0.0 package has a focused four-dependency footprint and no install-time scripts. Its license and unarchived source help, but support evidence is thin.
43%
Total Score
50
100
78
88
The package has no README, tests, or changelog, while the source repository also has none. Missing tests and changelog are normal for published artifacts, but the absent README is a minor consumer-documentation gap for a library module.
The repository is owned by a user account rather than an organization, so there is no organizational backing signal to offset the thin maintenance history.
The package has had only one release, published about five years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk for a dependency.
The repository recorded no commits and no active maintainers in the last three months, reinforcing the lack of recent maintenance evidence.
The repository has no stars or forks and only one watcher. This provides little external adoption evidence, though popularity is supporting evidence rather than a health verdict.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version 100.0.*|100.1.*|101.0.*|102.0.*|103.0.* | — | — |
magento/module-backend Version 100.0.*|100.1.*|100.2.*|101.0.*|102.0.* | — | — |
magento/zendframework1 Version ~1.14.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.