The MIT license, README, and matching organization repository improve transparency. Its broad dependency bundle is intentional for a metapackage, but no security policy or scanning is provided.
68%
Total Score
75
100
88
75
This is the first release, published today, so there is no release history to demonstrate sustained maintenance or stability.
No commits were recorded in the preceding three months, but the repository was pushed today and the package is newly published, so this is limited evidence rather than clear abandonment.
Composer build tooling is present, but no security scanning tooling was detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no documented channel or process for reporting and handling vulnerabilities.
No GitHub Actions workflows were present, so there are no workflow risks to assess; this also provides no automation evidence for testing or release controls.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
selveq/cache Version ^2.0 | — | — |
selveq/locale Version ^3.0 | — | — |
selveq/route717 Version ^3.0 | — | — |
selveq/installer Version ^5.0 | — | — |
magento/framework Version ^103.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.