Healthy and actively maintained, with clear documentation, licensing, and a matching source repository. It is still a very young package with 16 releases in 40 days, and most recent commits come from one contributor, so review changes carefully before relying on it broadly.
78%
Total Score
88
100
83
90
The package is only 40 days old but already has 16 releases, with releases roughly every 18 hours. This shows active iteration but leaves limited evidence of long-term maintenance stability.
One contributor made 31 of 34 recent commits, creating concentration risk. The organization-owned repository provides some ability to hand off maintenance, which keeps this as a caution rather than a severe risk.
The repository has zero stars, forks, and watchers. This is weak supporting evidence, but the package's very recent 40-day history makes low popularity unsurprising and not decisive.
Composer build tooling is present, but no security-scanning tools were detected. The missing scanning is a transparency gap, though it is not by itself evidence of unsafe maintenance.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-seo Version ^13.4 || ^14.1 | — | — |
typo3/cms-core Version ^13.4 || ^14.1 | — | — |
typo3/cms-fluid Version ^13.4 || ^14.1 | — | — |
typo3/cms-backend Version ^13.4 || ^14.1 | — | — |
typo3/cms-extbase Version ^13.4 || ^14.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.