The documentation and release packaging are strong for consumers. Maintenance history, security scanning, and a security policy are not yet established, so future support remains uncertain.
68%
Total Score
75
100
83
88
This is the package's first release, published less than a day ago, so there is no release track record or demonstrated maintenance cadence yet.
The repository has zero commits and zero active maintainers observed over the last three months. Because the repository is newly published, this indicates an unproven maintenance history rather than established abandonment.
Composer build tooling is present, but no security-scanning tooling was detected. That is a hygiene gap for a package intended to run in storefronts, though it is not evidence of a defect.
The linked repository has no security policy, leaving no documented reporting or response process for vulnerabilities.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^103.0 | — | — |
magento/module-store Version ^101.1 | — | — |
magento/module-config Version ^101.2 | — | — |
magento/module-catalog Version ^104.0 | — | — |
mage2kishan/module-core Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.