The package is small and clearly identified, with a GPL-3.0 license, a README, and no install-time scripts. Its narrow TYPO3 integration offers little evidence of ongoing compatibility work, while the absent security policy and scanning reduce transparency.
40%
Total Score
0
100
79
75
Only one release was published, on January 24, 2019, with no releases in the following seven years. This strongly indicates abandonment risk for a package that integrates with a changing platform.
The repository recorded zero commits and zero active maintainers in the last three months, and its last push was in October 2018. The non-archived status does not compensate for this prolonged inactivity.
Composer is used as a build tool, but no security scanning tools are present. For a small extension this is a modest hygiene gap, not evidence of an unsafe release by itself.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency concern, though it is less significant than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^8.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.