Tests, a README, and an MIT license make the package easier to evaluate, while its build workflow has no pinned actions. The repository is not archived, but ongoing maintenance evidence is limited.
55%
Total Score
0
100
71
75
The package has had no registry releases in more than five years, despite 10 releases since 2017. That is substantial evidence of low maintenance activity.
There were zero commits and zero active maintainers in the last three months. Combined with no registry release since January 2021, this points to limited ongoing maintenance.
Composer is used for builds, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than evidence that the package is unsafe.
The repository has no security policy. For a package that handles PrestaShop web-service access, this weakens vulnerability-reporting transparency.
The latest release is still v0.1.0 rather than a stable major version, which limits maturity evidence, although it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.