Usable with caveats: this is a very new package with only two releases and no recent commit history to establish dependable maintenance. It has a clear license, README, tests, and changelog, but lacks a security policy and security-scanning tooling.
58%
Total Score
50
100
86
83
The registry namespace and repository owner match, but the owner is an individual account rather than an organization; combined with the absence of established commit activity, long-term backing is not yet demonstrated.
The package is 0 days old and has only two releases published about 11 minutes apart, so there is not enough history to demonstrate reliable maintenance or release stability.
The repository records zero commits and zero active maintainers in the last three months. Because the package is newly published, this may reflect its recent creation, but it still leaves maintenance capacity unproven.
Composer build tooling is present, but no security-scanning tools are configured. For a package that processes potentially hostile web requests, this is a meaningful transparency and maintenance gap.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented for a security-focused module.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=103.0.4 <104 | — | — |
phpmyadmin/sql-parser Version ^5.0 || ^4.1 | — | — |
sisl-source/magento2-security-suite-common Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.