The package has a clear license, README, tests, changelog, and a matching organization-owned repository. Its source history is too new to demonstrate sustained maintenance, and the repository has no published security policy.
61%
Total Score
75
92
50
All 35 releases were published within the same day, so this package has not yet demonstrated a durable release history. Its high release count is therefore not evidence of maturity.
The repository recorded zero commits and zero active maintainers during the last three months. Because the package is newly published, this mainly shows that ongoing maintenance is unproven rather than confirmed abandonment.
The repository has no published security policy. That is a transparency gap for a package handling customer account and password-related GraphQL operations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^103.0 | — | — |
magento/module-email Version ^101.1 | — | — |
magento/module-store Version ^101.1 | — | — |
magento/module-catalog Version ^104.0 | — | — |
magento/module-customer Version ^103.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.