A declared GPL license, changelog, release notes, and one focused runtime dependency support straightforward adoption. Low repository activity, no security policy or scanning, and minimal project traction make future support harder to verify.
58%
Total Score
50
100
78
75
The repository is owned by an individual user rather than an organization, and the registry maintainer list also contains one person; this indicates a thin support base.
The package has had no registry release in nearly two years, despite 12 releases since 2020; this is a meaningful maintenance concern.
The repository recorded zero commits and zero active maintainers in the last three months, weakening evidence of ongoing maintenance.
The repository has no stars or forks and only one watcher; popularity is supporting evidence rather than a verdict, but this provides little external maturity signal.
Composer is used for builds, but no security scanning tools are configured, leaving the project's security hygiene less visible.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^11.5 || ^12.4 || ^13.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.