The organization-backed repository and package README provide useful provenance and basic consumer documentation. Missing security policy and scanning reduce transparency for ongoing maintenance.
58%
Total Score
75
100
79
75
The package has 13 releases over roughly five years, but none in the last 12 months. This indicates a meaningful maintenance slowdown, although the latest release is relatively recent overall.
The repository had zero commits and zero active maintainers in the last three months. Combined with the lack of releases in the last 12 months, this points to reduced maintenance activity.
Composer is used for builds, but no security scanning tools are configured. The missing scanning is a modest transparency and maintenance concern rather than evidence of unsafe code.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This lowers project transparency for a package used in applications.
The assessed version is marked as a prerelease, and all recent releases are prereleases. That weakens release maturity despite the stable-looking version suffix.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ~10.4.0 | — | — |
madj2k/t3-accelerator Version ~10.4.0 || ~11.5.0 || ~12.4.0 | — | — |
madj2k/t3-core-extended Version ~10.4.0 || ~11.5.0 || ~12.4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.