The small codebase and focused dependency set make this integration straightforward to assess. Organization backing, a current release, and release notes offset limited activity, one active contributor, and missing security tooling.
77%
Total Score
67
100
93
75
All 2 recent commits came from one contributor. Organizational ownership partly compensates for this concentration, but no second active contributor is shown.
The repository recorded 2 commits in the last 3 months, showing current activity but at a limited pace.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, which makes vulnerability reporting less transparent for a dependency used in Magento projects.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=100.2.0 | — | — |
smile/elasticsuite Version ~2.12.0 | — | — |
magento/module-quick-order Version >=100.0.0 | — | — |
magento/magento-composer-installer Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.