Clear licensing, documentation, repository ownership, and a focused dependency set support adoption. The project is still young, with little visible community activity and no security-scanning tooling, so longer-term maintenance remains uncertain.
68%
Total Score
67
100
83
100
This package is 156 days old and has only one release, so there is not enough release history to establish durable maintenance. Its stable 1.0.0 release and matching GitHub release provide some maturity evidence.
There were zero commits and zero active maintainers in the last three months. For a package released only once, this leaves ongoing maintenance capacity unproven rather than showing definite abandonment.
There are no issues or pull requests, so there is no visible community support or maintenance discussion. With no reported problems and a young project, this is only a minor concern.
The repository has no stars, forks, or watchers. This is weak supporting evidence, but popularity is not decisive for a small, specialized module.
Composer build tooling is present, but no security-scanning tools were detected. That is a transparency and hygiene gap, not evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^102.0 || ^103.0 | — | — |
hyva-themes/magento2-theme-module Version ^1.3.11 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.