A clear GPL-2.0+ license, usable README, and organization-owned repository improve transparency. There are no install scripts or workflow findings, but the missing security policy leaves less guidance for vulnerability reporting.
58%
Total Score
75
90
75
The package has 17 releases since August 2016, but its latest release was November 27, 2023 and it had no releases in the last 12 months. This materially raises abandonment risk despite a previously established release history.
The repository recorded no commits and had no active maintainers in the last three months; together with the old latest release, this indicates current maintenance has stopped or is very limited.
The linked repository has no security policy, so users have no documented channel or process for reporting vulnerabilities. This is a transparency gap, though it does not by itself show unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^12.4 | — | — |
typo3/cms-backend Version ^12.4 | — | — |
typo3/cms-extbase Version ^12.4 | — | — |
typo3/cms-frontend Version ^12.4 | — | — |
typo3/cms-extensionmanager Version ^12.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.