The package has a clear README and changelog, a stable release line, and no install-time scripts. Its young project has no security policy or automated security scanning, so future maintenance deserves scrutiny.
67%
Total Score
67
100
93
75
One contributor made all three recent commits. Organization ownership provides some handoff capacity, but no second active contributor is shown.
Only three commits were recorded in the last three months, which is modest activity for a recently released package and leaves some maintenance uncertainty.
Composer is used as a build tool, but no security scanning tools are present, leaving an avoidable supply-chain hygiene gap.
The repository has no SECURITY policy, reducing transparency about how users should report vulnerabilities or receive security guidance.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^103.0 | — | — |
magento/module-backend Version ^102.0 | — | — |
mage2kishan/module-core Version ^1.0 | — | — |
magento/module-page-builder Version ^2.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.