The package is small and focused, with a clear README, matching repository, and an exact-version GitHub release. Maintenance appears dormant, and the repository has no security policy or automated security scanning.
61%
Total Score
50
86
50
Four releases arrived within the first week, but no later releases are shown over the package's 230-day age; this suggests a brief burst followed by inactivity.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, which is meaningful abandonment risk for a package consumers may need maintained.
Composer build tooling is present, but no security scanning tools were detected, leaving a notable supply-chain hygiene gap.
The repository has no security policy, reducing transparency for reporting and handling security issues; the package's small scope limits but does not remove this concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version ~103.0 | — | — |
magento/module-sales Version ~103.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.