Log the changed data in frontend mode
68%
Total Score
caution
Usable with caveats: maintenance has gone quiet and the build workflows need stronger supply-chain hygiene.
The manifest declares MIT, while the artifact and repository license files were detected as Apache-2.0. This licensing mismatch creates avoidable uncertainty for downstream users.
The repository recorded zero commits and zero active maintainers in the last three months. With no compensating recent commit activity, this raises maintenance and abandonment concern.
There is one open issue and one open pull request, but no new or closed issues or pull requests in the last month. This is a modest sign of limited current project activity.
Composer build tooling is present, but no security scanning tools were detected. This is a minor transparency and hygiene gap rather than evidence of unsafe code.
The repository has no security policy, leaving the process for reporting and handling vulnerabilities undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^13.4 | — | — |
typo3/cms-beuser Version ^13.4 | — | — |
typo3/cms-backend Version ^13.4 | — | — |
typo3/cms-extbase Version ^13.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.