The package has clear documentation, a stable dependency profile, and organizational ownership. Its small community and lack of security tooling leave less independent oversight, despite regular releases.
78%
Total Score
67
100
94
50
There were no commits and no active maintainers in the last 3 months, which is a maintenance warning, although the recent release history and repository push provide compensating evidence.
One issue and one pull request are open, while none were opened or closed in the last month; this shows limited recent collaboration but does not establish abandonment by itself.
Composer is used for builds, but no security scanning tools are present. Build tooling supports reproducibility, while the missing security checks reduce repository oversight.
The repository has no security policy, leaving no documented process for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^12|^13|^14 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.