The package is small and clearly licensed, with a focused dependency set and a matching README reference. Its last release was over three years ago, and the repository has no tests or security scanning, so future maintenance is uncertain.
54%
Total Score
50
100
83
50
One registry maintainer is consistent with a small personal package, but it also indicates limited publishing redundancy when combined with the inactive project.
The package has had no release in over three years, with zero releases in the last 12 months; this materially raises abandonment and compatibility risk.
The repository has zero stars and forks and only one watcher, offering little evidence of community review or shared maintenance capacity.
Composer build tooling is present, but no security scanning tooling was detected, leaving a project-quality and maintenance gap.
No security policy is present, which weakens vulnerability-reporting transparency for a module that handles customer data and sends it by email.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=103.0.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.