Documentation, licensing, and a focused dependency set make the package understandable to integrate. The repository is not archived and its workflows had no reported audit findings, but the evidence is too old for a new dependency.
40%
Total Score
100
83
50
Only two releases exist, both in May 2022, with no releases in the last 12 months and the latest release more than four years old. This is strong evidence of abandonment risk for a package used in infrastructure.
The repository has no security policy, reducing transparency for reporting and handling vulnerabilities. This is a secondary concern compared with the long maintenance gap.
Both workflows were fully analyzed with no reported audit findings or dangerous trigger and sink combinations. However, all five analyzed action references are unpinned, leaving avoidable build reproducibility risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
labor-digital/typo3-better-api Version ^10.35.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.