Usable with caveats: it has a long release history, regular recent releases, and is backed by an active organization-owned repository. However, the repository and package contain only two files, with no tests, documentation, changelog, recent commits, or security policy, making transparency and ongoing maintenance harder to verify.
62%
Total Score
67
100
83
70
Both the package and linked repository contain only .gitignore and composer.json. Such a minimal tree leaves no implementation, test, or documentation evidence to inspect and substantially limits transparency.
Neither the artifact nor repository has a README, tests, or changelog. GitHub Releases provide some release transparency, but the lack of tests and documentation remains a meaningful maintenance and adoption gap.
The repository recorded zero commits and zero active maintainers in the last three months. This conflicts with the recent registry release cadence and leaves current source maintenance difficult to verify.
There are five open issues but no new or closed issues and no pull-request activity in the last month. This provides little evidence of current issue response or collaborative maintenance.
The repository has zero stars and one fork, indicating very limited visible adoption. Popularity is only supporting evidence, but these numbers provide no community-maintenance cushion.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
getresponse/magento2 Version 21.4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.