The package has a focused TYPO3 extension tree, two runtime dependencies, and a unit test. Its declared MIT license and lack of install scripts reduce other adoption concerns, but the repository could not be found, so source maintenance and provenance cannot be verified.
40%
Total Score
100
70
100
The package has had no release in more than five years, with zero releases in the last 12 months. That strongly raises abandonment risk despite four releases and a previously regular 46-day median interval.
The assessed 2.0.1 release does not match the registry's reported latest version, 1.0.1, although the package is marked stable and not prerelease. This mismatch reduces release transparency.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^9.5 | — | — |
kitt3n/kitt3n-userfuncs Version ^1.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.