Product locale restriction storage module.
62%
Total Score
caution
Usable with caveats: no registry release in over three years despite a still-active, non-archived repository.
The latest registry release was published in June 2023, with no releases in the last 12 months; this materially raises staleness risk for a dependency. The package has a multi-year history and four releases, which provides some maturity but does not offset the prolonged release gap.
There were no commits and no active maintainers in the last three months, which is a concrete sign of currently limited development activity. The recent repository push shown by repository_archived partially offsets abandonment concerns.
The repository uses Make and Composer, showing basic build tooling, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no documented process for reporting or handling vulnerabilities.
All three workflow action references are unpinned, so their behavior can change without a repository commit; however, the audit found no untrusted checkout, script injection, high-severity issue, or write-wide token configuration.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spryker/locale Version ^2.2.0 || ^3.0.0 || ^4.0.0 | — | — |
spryker/storage Version ^3.0.0 | — | — |
spryker/event-behavior Version ^1.0.0 | — | — |
spryker/synchronization Version ^1.0.0 | — | — |
spryker/synchronization-behavior Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.