The module is licensed, has a clear README and changelog, and avoids install-time scripts. Its source repository is not archived, but the long maintenance gap makes adopting this release a commitment.
54%
Total Score
67
100
88
88
The package has 56 releases since June 2019, but its latest release was in July 2022 and it had no releases in the last 12 months. That long gap is a meaningful maintenance concern.
There were zero commits and zero active maintainers in the last three months, consistent with the release gap and increasing abandonment risk.
There were no new or closed issues or pull requests in the last month, while two issues and eight pull requests remain open. This suggests little visible project response.
Composer is used for the build, but no security-scanning tooling was detected. The missing scanner is a hygiene weakness, not evidence that the package is unsafe by itself.
The repository has no security policy, reducing the transparency of its vulnerability-reporting process. This is a documentation gap alongside the broader maintenance concerns.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/magento-composer-installer Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.