The project has only two releases and one recent contributor, so its long-term maintenance capacity is still unproven. Documentation, tests in the repository, licensing, and a matching source repository are reassuring, while missing security scanning and unpinned workflow actions add smaller concerns.
68%
Total Score
50
100
81
75
The repository is owned by an individual user rather than an organization, so the single-contributor concentration is not offset by visible organizational backing.
The package is 215 days old with only two releases, spaced about 163 days apart, so there is limited evidence of established maintenance.
One contributor made all commits during the last three months, leaving maintenance dependent on a single active person.
One commit in the last three months shows some recent activity, but the volume is too small to demonstrate sustained maintenance.
The repository has zero stars and forks and one watcher; this is weak supporting evidence, though popularity alone does not determine package health.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^14.3 | — | — |
typo3/cms-felogin Version ^14.3 | — | — |
typo3/cms-frontend Version ^14.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.