The package includes tests, release notes, a clear license, and only one runtime dependency. Its repository has no security policy and does not identify the package in its README, making ownership and ongoing maintenance less transparent.
60%
Total Score
75
100
81
75
The package has six releases since March 2019, but none in over three years; the long release interval and current inactivity raise maintenance concerns.
The repository recorded zero commits and zero active maintainers during the last three months, weakening evidence of active maintenance.
The repository name does not match the package name and its README does not mention the package, so the linkage and ownership are less transparent than expected.
The project uses Composer, but no security-scanning tools were detected, leaving a modest gap in repository hygiene.
No repository security policy was found, reducing transparency for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
mageplaza/module-core Version ^1.5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.