Healthy and suitable to install. It has regular releases, active work from six contributors, complete package documentation and tests, and clear organization backing; the main gaps are limited security-process evidence and minimal repository popularity.
88%
Total Score
100
100
89
80
The repository has zero stars and forks and only three watchers, so independent adoption evidence is limited. This is supporting evidence only and is outweighed by the long release history, recent commits, and organization backing.
The repository uses Composer build tooling, but no security-scanning tool was detected. The missing scanner is a process gap, though other maintenance evidence is strong.
No repository security policy was found. This reduces transparency for reporting vulnerabilities, but it is partly offset by the package's active organization-backed development.
The one workflow does not declare top-level token permissions. No write permissions were detected, but explicit least-privilege settings would provide stronger workflow hygiene.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
spryker/twig Version ^3.18.0 | — | — |
spryker/kernel Version ^3.52.0 | — | — |
spryker/storage Version ^3.4.0 | — | — |
spryker/symfony Version ^3.1.0 | — | — |
spryker/customer Version ^7.4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.