The package is clearly scoped, licensed, and straightforward to inspect. Its maintenance record is too new to establish reliability, and the repository has no security policy or scanning. Pin this version until a longer release and commit history emerges.
67%
Total Score
50
100
88
83
This is the first release, published 0 days ago, so there is no track record for release continuity or abandonment risk. The linked repository exists, but it cannot compensate for the absence of historical releases.
There were 0 commits and 0 active maintainers in the last 3 months, but the repository and package are 0 days old. This is weak evidence of maintenance rather than proof of abandonment, so it warrants a moderate caution.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are configured. This is a transparency and maintenance-hygiene gap rather than a severe risk.
The repository has no security policy. For a new integration bundle this limits the documented path for reporting vulnerabilities and handling maintenance issues.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
contao/core-bundle Version ^5.0 | — | — |
neckarpixel/contao-nprangeslider-bundle Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.