Healthy and actively maintained, with a current stable release, recent contributions from six maintainers, and clear organization backing. The main caveats are missing repository security scanning and a security policy, plus no tests in the package or repository.
88%
Total Score
100
100
89
80
The artifact has a README and changelog, and the repository uses GitHub Releases, which support transparency. Neither the package nor repository contains tests, leaving a modest maintenance-quality gap.
Composer build tooling is present, but no security-scanning tool was detected. This is a hygiene gap, though it is not evidence of abandonment and other repository controls are present.
The repository has no SECURITY.md or other security policy, reducing transparency about vulnerability reporting and response.
The one workflow does not declare top-level token permissions. No write permissions were detected, but explicit least-privilege settings would provide stronger CI assurance.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
spryker/twig Version ^3.0.0 | — | — |
spryker/kernel Version ^3.30.0 | — | — |
spryker/zed-ui Version ^4.3.0 | — | — |
spryker/symfony Version ^3.9.0 | — | — |
spryker/transfer Version ^3.27.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.