Winter Boot modules
65%
Total Score
caution
This is a brand-new release with all recent commits from one contributor, despite an active and clearly linked repository.
Only one registry publishing maintainer, Suvera, is listed. The linked repository is also owned by the same individual, so there is little visible publishing redundancy.
The registry namespace and repository owner both identify Suvera, but the owner is a user account rather than an organization, providing limited evidence of institutional maintenance capacity.
The package is brand new: it has one release and was first published on October 10, 2026, so long-term maintenance and release consistency are unproven.
All 14 commits in the last three months came from one contributor, Suvera, leaving maintenance highly concentrated and creating a meaningful continuity risk.
Composer is used as a build tool, but no security-scanning tools are reported, leaving supply-chain and code-security checks less visible.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
aws/aws-sdk-php Version ^3.0 | — | — |
opensearch-project/opensearch-php Version 2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.