This release appears suitable for adoption, with strong recent publishing activity, a stable non-prerelease 2.0.0 version, an active and non-archived source repository, clear MIT licensing, and a repository that matches and documents the package. The main concerns are limited recent repository activity—only 2 commits from 1 contributor in the last 3 months—along with no repository tests, no security policy, and no security scanning tools. Organization backing partly mitigates the concentrated maintainer risk, while the package's substantial 145-file implementation and documented changelog provide useful transparency.
78%
Total Score
67
50
94
83
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/module-widget Version * | — | — |
sabberworm/php-css-parser Version ^8.7 | — | — |
magento/module-page-builder Version ^2.0 | — | — |
mage-os/module-advanced-widget Version ^1.2.5 | — | — |
hyva-themes/magento2-theme-module Version ^1.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.