Recent releases and a stable 1.0.6 give the project a usable baseline. The small active contributor base and missing security policy leave maintenance and disclosure coverage thin.
66%
Total Score
67
50
94
75
Six runtime dependencies are aligned with a Magento admin extension, though the package has no declared development dependencies for visible project validation.
One contributor made all two recent commits, leaving no demonstrated handoff capacity in the current activity window.
The repository had only two commits in the last three months, indicating limited recent maintenance activity despite the recent release cadence.
Composer build tooling is present, but no security-scanning tooling was detected.
The repository has no security policy, leaving vulnerability reporting and disclosure expectations undocumented.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^103.0 | — | — |
magento/module-ui Version ^101.2 | — | — |
magento/module-sales Version ^103.0 | — | — |
magento/module-backend Version ^102.0 | — | — |
mage2kishan/module-core Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.