There is no security policy or security scanning, which limits transparency for an authentication extension. A clear README, unit tests, MIT licensing, and a non-deprecated stable release provide useful support.
68%
Total Score
50
88
50
The package is only 65 days old and has two releases, with a median interval of about 9 days; this shows an early project with limited long-term maintenance evidence.
One contributor made 100% of the two recent commits, leaving maintenance dependent on a single active person.
Only two commits were recorded in the last three months, indicating limited observed maintenance activity for a package handling authentication integrations.
Composer build tooling is present, but no security-scanning tools were detected, leaving security checks less visible for an OAuth-related extension.
The repository has no security policy, reducing transparency around reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
magento/module-store Version * | — | — |
hybridauth/hybridauth Version ^3.0 | — | — |
magento/module-backend Version * | — | — |
magento/module-customer Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.