The README, organization-backed repository, and GitHub release provide useful ownership and usage context. Missing security scanning and two unpinned workflow actions weaken maintenance and build hygiene. Only one release exists, and the repository has had no commits for more than three years.
45%
Total Score
67
50
81
67
This is the package's only release, published more than three years ago, with no releases in the last 12 months. That strongly limits evidence of ongoing maintenance.
The repository recorded no commits and no active maintainers in the last three months, consistent with an extended period of inactivity and elevated abandonment risk.
Eight runtime dependencies, including core Spryker and Kubernetes libraries, create a meaningful dependency surface but are reasonable for an adapter package.
Composer is used for builds, but no security-scanning tool is configured. This weakens ongoing detection and maintenance hygiene.
The repository has no security policy, leaving no documented path for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spryker/log Version ^3.7.0 | — | — |
spryker/queue Version ^1.5.0 | — | — |
spryker/kernel Version ^3.56.0 | — | — |
spryker/symfony Version ^3.5.0 | — | — |
spryker/transfer Version ^3.25.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.