The declared license and small dependency surface reduce adoption friction. The minimal three-file layout offers little consumer documentation, while the repository provides no security policy or scanning evidence.
38%
Total Score
0
100
67
83
This package has only one release, published about 3 years 9 months ago, with no releases in the last 12 months. That gives little evidence of ongoing maintenance.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the absence of newer releases and indicating substantial abandonment risk.
The published artifact has no README, tests, or changelog. Tests and changelogs are not expected in published artifacts, but the missing README is a minor consumer-documentation gap for a library module.
The repository name does not match the package name, and no package-name mention was found in its README. That makes ownership and source alignment less transparent.
The linked repository has no security policy or security-scanning tooling evidence. This weakens vulnerability-reporting and maintenance transparency, though it is not a severe risk by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.