The package is clearly documented, licensed, and backed by an organization, with a small runtime dependency surface. Its release notes and current repository state help, but the limited recent development activity warrants checking compatibility before adopting.
68%
Total Score
75
100
93
50
The package has existed for about 4 years and 9 months, but has only 7 releases, with one release in the last 12 months and a typical interval of about six months. This indicates a slow maintenance cadence rather than abandonment on its own.
The repository had zero commits and zero active maintainers during the last three months. That recent inactivity is a meaningful maintenance concern, even though the release was published during the broader collection period.
The repository has no security policy and no security scanning tools were detected in the collected repository tooling. This is a transparency and response-process gap, though it does not by itself indicate unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^13.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.