Intelligent redirect management and 404 handling for Craft CMS
78%
Total Score
healthy
Healthy: frequent releases and current source activity outweigh a one-person maintainer base.
Composer post-install and post-update scripts run during dependency operations, adding install-time behavior that developers should understand before adopting the package.
All 100 recent commits came from one contributor, creating a meaningful continuity risk despite the project's active development.
The repository uses Composer build tooling and has a security policy, but no security scanning tools were detected; the policy helps transparency while automated coverage is limited.
The audit completed all three workflows with no high-confidence findings or untrusted-trigger sinks, but all six action references are unpinned and two workflows grant top-level write permissions, leaving avoidable workflow supply-chain and token-scope exposure.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
craftcms/cms Version ^5.10 | — | — |
lindemannrock/craft-plugin-base Version ^5.38.2 | — | — |
lindemannrock/craft-logging-library Version ^5.19.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.