The module is well documented, licensed, tested, and has a stable release. Maintenance evidence is now thin: no commits or active maintainers were recorded in the last three months, and no releases appeared in the last 12 months. No security policy or scanning tooling is present.
62%
Total Score
83
88
83
The package has 10 releases since September 2024, but none in the last 12 months; this indicates materially slowed maintenance despite its earlier release history.
No commits and no active maintainers were recorded in the last three months. This is a meaningful abandonment concern, even though the repository remains available and the release is stable.
Composer build tooling is present, but no security scanning tools were detected. That is a modest transparency and maintenance gap, not a severe risk on its own.
The repository has no security policy. This weakens vulnerability-reporting transparency, though it does not by itself show that the package is unsafe to depend on.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version * | — | — |
magento/framework Version * | — | — |
magento/module-ui Version * | — | — |
magento/module-eav Version * | — | — |
magento/module-tax Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.