Usable with caveats: this is a coherent, licensed, non-deprecated release with a useful README and a matching source repository. It is brand new, has no demonstrated commit or issue activity yet, and lacks security scanning and a security policy.
62%
Total Score
67
100
83
88
Only one registry account has publishing access, which creates some operational concentration risk; the matching repository ownership provides limited context but does not establish a broader maintainer base.
The package has only two releases and was first published today, so there is not yet enough history to demonstrate sustained maintenance.
There were no commits or active maintainers in the last three months, but the repository is newly created, so this is evidence of unproven maintenance rather than established abandonment.
The repository has no stars, forks, or watchers. This does not make a small package unsafe, but it provides no supporting community evidence.
Composer build tooling is present, but no security scanning tools were detected, leaving security-maintenance practices unverified.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=103.0.4 <104 | — | — |
sisl-source/magento2-security-suite-common Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.