The package includes a useful README, documentation, and repository tests, while its Composer dependency set is small. It is not archived or deprecated, but the lack of a security policy and unpinned workflow actions reduce confidence in future upkeep.
58%
Total Score
67
100
88
75
The latest release was on November 16, 2022, and there have been no releases in nearly four years. Fifteen releases show earlier activity, but the current lack of releases raises maintenance risk.
There were zero commits and zero active maintainers in the last three months. Combined with the last release nearly four years ago, this is the strongest evidence of maintenance risk.
The repository has three open issues and one open pull request, but no new or closed issues or pull requests in the last month. This adds modest evidence of inactivity.
Composer is used for the build, but no security scanning tools are present. The missing scanning is a minor hygiene gap rather than evidence that the package is unsafe.
The repository has no security policy. For a maintained web extension, that reduces transparency around vulnerability reporting and response.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^11.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.