Clear documentation, tests, and release notes make integration easier. Workflow hygiene needs attention because every action reference is unpinned and one uses an archived action.
86%
Total Score
100
100
100
50
The repository has no security policy, leaving vulnerability-reporting expectations less explicit. This is a transparency gap, but it is partly offset by the active organization-backed project.
All four workflows were analyzed without untrusted checkouts or script injection, and three scope permissions at job level. However, all 15 action references are unpinned and one medium-confidence, high-confidence finding identifies an archived action, creating workflow supply-chain hygiene risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^102.0|^103.0 | — | — |
magento/module-config Version ^101.0 | — | — |
magento/module-backend Version ^101.0|^102.0 | — | — |
magento/module-customer Version ^102.0|^103.0 | — | — |
multisafepay/magento2-core Version ^3.21 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.