The package is small and clearly identified, with a README, changelog, and matching source repository. Organization backing and an active, non-archived repository help, but the single release and no recent commits leave maintenance uncertain; workflow references are also unpinned.
58%
Total Score
75
88
67
This is the only release, published about 16 months ago, with no releases in the last 12 months. That limited history leaves maturity and ongoing maintenance uncertain.
There were no commits and no active maintainers in the last 3 months. Combined with a single release, this is the strongest indication that ongoing maintenance may be limited.
Composer build tooling is present, but no security scanning tool was detected. This is a modest transparency and maintenance weakness, not evidence of unsafe code.
The repository has no security policy, leaving vulnerability reporting and handling procedures undocumented.
The workflow audit completed cleanly with no injection or high-severity findings, but all 4 action references are unpinned. That weakens build reproducibility without showing an immediate severe risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
spryker/kernel Version ^3.75.0 | — | — |
spryker/symfony Version ^3.11.1 | — | — |
spryker/customer Version ^7.48.1 | — | — |
spryker-shop/company-page Version ^2.20.0 | — | — |
spryker/file-manager-storage Version ^2.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.