The package has a clear repository, organization backing, stable version, license, README, and changelog. Its limited release history, no recent commits, absent security policy, and unpinned workflow actions warrant caution for long-term dependency use.
58%
Total Score
75
88
75
This is the only release in 485 days, with no releases in the last 12 months, so there is little evidence of an established release cadence or ongoing package maintenance.
There were zero commits and zero active maintainers in the last three months, which is a concrete sign of limited recent maintenance capacity.
The repository uses Composer for builds, but no security scanning tools were detected. That is a repository hygiene gap, although it is not evidence that the package is unsafe by itself.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
The workflow audit completed successfully with no reported findings or untrusted execution sinks, but all four action references are unpinned, weakening build reproducibility and increasing dependence on mutable action versions.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
spryker/acl Version ^3.13.0 | — | — |
spryker/gui Version ^3.47.1 | — | — |
spryker/kernel Version ^3.75.0 | — | — |
spryker/symfony Version ^3.11.1 | — | — |
spryker/util-text Version ^1.5.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.