The module is small, clearly licensed, and has focused dependencies with an organization-backed repository. Its last release and repository push were in December 2022, leaving a substantial maintenance gap for a production extension.
62%
Total Score
75
100
88
83
The package has 28 releases since November 2019, but none in the last 12 months and its latest release was in December 2022. That long release gap raises maintenance and abandonment concerns.
There were zero commits and zero active maintainers in the last three months, consistent with the repository's last push in December 2022. This is the strongest evidence of current maintenance risk.
The repository uses Composer, which fits the package ecosystem, but no security scanning tools were detected. That is a modest transparency and hygiene gap, not evidence of unsafe code.
No security policy was found in the linked repository. For a small extension this is a hygiene gap, but it does not outweigh the clear license, focused dependencies, and organization backing.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
magento/module-store-graph-ql Version ^100.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.