Clear licensing, a matching repository, and useful installation documentation support adoption. The beta status and limited security tooling leave less assurance for a package whose maintenance has already slowed substantially.
52%
Total Score
67
100
71
75
The artifact includes a README, tests, and a changelog, which supports consumer understanding and packaging maturity. Its README also explicitly describes the software as beta and incomplete, limiting that positive signal.
The package has had only 3 releases since August 2020, with no release in nearly 4 years and none in the last 12 months. This is a substantial maintenance concern, though the repository remains available and unarchived.
There were no commits or active maintainers in the last 3 months, consistent with a project whose last observed repository push was in March 2023. This materially raises abandonment risk.
There are no new or closed issues in the last month, while 6 pull requests remain open. This suggests limited recent project activity and leaves changes unresolved.
Composer is used for builds, but no security scanning tools were detected. The missing scanning layer is a modest transparency and maintenance weakness.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
oomphinc/composer-installers-extender Version ~1.1 || ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.