A clear README, stable version, and small dependency set make integration straightforward. Organization backing and a recent release provide useful continuity, while the lack of a security policy leaves maintenance transparency incomplete.
67%
Total Score
88
100
88
83
The package has been published since 2017 with 19 releases, but only one release in the last 12 months indicates a modest cadence. The recent release still provides evidence of ongoing maintenance.
The repository recorded zero commits and zero active maintainers during the last three months. This weakens confidence in current maintenance despite the recent release and push activity.
Composer is used for builds, providing expected ecosystem tooling. No security scanning tools were detected, leaving a modest verification gap.
The repository has no security policy. That reduces transparency about vulnerability reporting and maintainer response practices.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version 100.1.*|101.0.*|102.0.*|103.0.* | — | — |
magepal/magento2-core Version >=1.1.10 | — | — |
magento/module-backend Version 100.1.*|100.2.*|101.0.*|102.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.