The module is clearly licensed and tied to the matching repository, but its small footprint and lack of security policy add little confidence. Treat it as legacy Magento code and verify compatibility before adoption.
38%
Total Score
75
75
75
The package has only one release, published about 10 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk, although the repository is not archived.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with a project that has seen no recent maintenance. Its non-archived status provides little practical compensation.
Composer is used for the project, which supports reproducible dependency management, but no security scanning tools are present. The missing scanning is a modest supply-chain hygiene gap.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. For a web framework module, this is a genuine transparency gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.