The module is easy to inspect: its 16-file tree is small, the README gives installation steps, and it has no install-time scripts. It is licensed and not archived, but there is little evidence of operational security or testing.
44%
Total Score
50
83
75
This package has only one release, published in April 2019, with no releases in the last 12 months. That long period without a new release is a meaningful maintenance concern.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with a project that is no longer actively maintained.
Composer is used for the build, but no security-scanning tools were detected. The build setup is present, while automated security coverage is not evident.
The linked repository has no security policy, leaving vulnerability-reporting and response practices undocumented. This is a hygiene gap, though it is less severe for a small Magento extension.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
metagento/core-m2 Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.