Healthy and suitable to use, with normal beta-release caveats. It has frequent releases, recent work from two active contributors, organization backing, and a matching repository, but every recent release is prerelease and the repository has no security policy or scanning tools.
78%
Total Score
100
50
89
83
The package declares 22 runtime dependencies, including many Drupal CMS components; this is substantial integration surface and can increase upgrade coordination, though it fits a Drupal site-template package.
Composer is used as a build tool, which is appropriate for a Packagist package, but no security scanning tools are configured.
The repository has no security policy, leaving vulnerability-reporting expectations and response procedures undocumented.
The assessed version is a prerelease, and all recent releases are prereleases, so the API and behavior may still change. This is a meaningful caveat despite the active release history.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
drupal/cva Version ^1 | — | — |
drupal/seckit Version ^2.0 | — | — |
drupal/antibot Version ^2.0 | — | — |
drupal/fast_404 Version ^3.0 | — | — |
drupal/config_split Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.