Magento 2 Module Pagar.me
55%
Total Score
caution
Usable with caveats: no commits or active maintainers were recorded in the last three months.
There were zero commits and zero active maintainers in the last three months. This is the strongest abandonment concern in the collected evidence.
Only two releases exist over 422 days, with one release in the last 12 months and a median interval of about 163 days. This indicates a thin release history and limited evidence of sustained maintenance.
No new or merged pull requests and no new or closed issues were recorded in the last month. With zero recent commits, this suggests little current project activity.
No repository security policy was found. For a payment integration module, this is a meaningful transparency gap because it gives users no stated path for reporting vulnerabilities.
All five workflows were analyzed, with no high-severity findings or untrusted checkouts, but 16 of 19 action references are unpinned. High-confidence inherited-secrets findings affect three workflows, while the medium-confidence template-injection finding is a lesser hygiene concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
warleyelias/ecommerce-module-core Version ~2.8.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.