The repository includes tests, a changelog, clear licensing, and an organization behind it. There is no security policy, while the release history and contributor base provide limited evidence of long-term support.
68%
Total Score
83
100
93
88
This is the package's first release, published less than a day ago, so there is no track record for maintenance or compatibility over time.
All six recent commits came from one contributor, leaving maintenance dependent on a single active developer; organization backing provides some potential handoff capacity but no second active contributor is shown.
The repository has no published security policy, leaving vulnerability-reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
paradoxlabs/clover Version ^2.1 | — | — |
hyva-themes/magento2-theme-module Version ^1.3.11 | — | — |
hyva-themes/magento2-hyva-checkout Version ^1.3 | — | — |
hyva-themes/magento2-payment-icons Version >=2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.