Tests, a clear MIT license, and organization backing provide useful maintenance and transparency signals. The old release history, recent lack of commits, missing README, and unpinned workflow references make long-term upkeep less certain.
58%
Total Score
83
100
81
83
Tests are present in both the package and repository, which supports maintainability; the missing README is a minor integration gap for a library package.
The package has only two releases, with the latest in January 2023 and none in the last 12 months, indicating a substantially slowed release cadence.
There were no commits and no active maintainers in the last three months, which is a meaningful sign of currently limited maintenance capacity.
The repository uses Make and Composer, but no security scanning tools were detected, leaving a modest tooling gap.
No security policy is present, reducing transparency about how vulnerabilities should be reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
fond-of-spryker/brand-company Version dev-master | — | — |
fond-of-spryker/brand-extension Version dev-master | — | — |
fond-of-oryx/brands-rest-api-extension Version ^1.0.0 || ^2.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.