The package includes clear installation guidance, a changelog, and matching license files. It has no security policy, tests, or demonstrated commit activity yet, so maintenance capacity remains unproven.
58%
Total Score
75
50
86
75
The package declares 11 runtime dependencies, mostly Magento components plus Redis support; this is a substantial but coherent platform-specific dependency surface rather than an unexplained dependency set.
The package is 0 days old and has 41 releases, all within the last 12 months with a median interval of 0 days; this release history is too new and compressed to demonstrate durable maintenance.
The repository has recorded 0 commits and 0 active maintainers in the last 3 months. Because the package is newly published this may reflect limited history, but it does not yet show ongoing maintenance capacity.
Composer is used as the build tool, but no security-scanning tools are present. The missing scanning coverage is a hygiene gap, not evidence that the release is unsafe by itself.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ^103.0 | — | — |
magento/module-store Version ^101.1 | — | — |
magento/module-config Version ^101.2 | — | — |
colinmollenhour/credis Version ^1.10 | — | — |
magento/module-backend Version ^102.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.