It has a clear MIT license, a matching repository, and no install-time scripts. Its small dependency set is reassuring, but compatibility and security fixes remain uncertain for this login integration.
38%
Total Score
0
100
79
83
The package has only one release, published about 9 years ago, with no releases in the last 12 months. That provides little evidence of ongoing maintenance or compatibility work.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the package having been inactive for about 9 years. No provided activity signal compensates for this gap.
Composer is used as a build tool, but no security scanning tools are present. This is a modest hygiene gap, not a substitute for the stronger maintenance concern.
The repository has no security policy. For a package used in an authentication integration, this reduces transparency around vulnerability reporting, though it is secondary to the long inactivity period.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
jjpmann/ee-addons Version dev-master | — | — |
composer/installers Version ^1.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.