The README, tests, recent releases, and stable version provide useful maintenance evidence. A single recent contributor, no security policy, and uncertain package-to-repository alignment leave meaningful ownership and transparency concerns.
64%
Total Score
50
100
88
75
One contributor made all three commits in the last three months, concentrating current maintenance responsibility in a single person without organizational backing shown by the provided project context.
The repository received three commits in the last three months, so activity has not stopped, but the small volume limits evidence of sustained maintenance capacity.
The repository name is reported as not matching the package name and the README does not provide a package mention, leaving some uncertainty that the linked source is specifically for this package.
Composer is used as a build tool, but no security-scanning tool is reported, leaving a modest gap in routine project hygiene.
The repository has no security policy, reducing transparency about vulnerability reporting and response expectations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
weline/module-backend Version @dev | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.