The stable major release, compatible release notes, and maintained non-archived repository support adoption. Recent release and commit activity are absent, while the project has no security policy or scanning, so future maintenance and response capacity are uncertain.
62%
Total Score
75
100
88
83
The package has 15 releases since December 2018, but none in the last 12 months; its latest registry release was about 14 months ago. This weakens evidence of ongoing maintenance, although the repository was pushed more recently.
The repository recorded zero commits and zero active maintainers over the last three months. This is a meaningful sign of limited recent development activity.
Composer is used for builds, but no security scanning tools are configured. That limits automated security-process transparency without proving the package is unsafe.
The repository has no security policy. Consumers therefore lack a documented process for reporting vulnerabilities or understanding the project's response expectations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mpdf/mpdf Version ^7.1.0 | ^8.0.0 | ^8.2.3 | ^8.2.5 | — | — |
mageplaza/module-core Version ^1.5.13 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.