Keycloak SSO Integration Bundle for Pimcore
64%
Total Score
50
100
81
83
The registry namespace and repository are owned by the same individual account, providing direct ownership alignment but no organizational backing to offset the single-maintainer risk.
The package is only 27 days old, with four releases and the latest published recently. This shows active early development but provides little long-term maintenance history.
One contributor made all three recent commits, leaving maintenance highly dependent on a single person with no demonstrated handoff capacity.
There were three commits in the last three months, so activity is present, but the volume is modest for a newly released integration package.
The repository has zero stars, forks, and watchers. This is weak supporting evidence for maturity, though low popularity alone does not make a small, actively maintained package unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
open-dxp/opendxp Version ^1.0 | — | — |
symfony/framework-bundle Version ^7.4 | — | — |
stevenmaguire/oauth2-keycloak Version ^2.0 | — | — |
knpuniversity/oauth2-client-bundle Version ^2.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.