The package includes tests, a useful README, and organizational ownership, which provide some maintenance and adoption support. Its missing security policy and scanning leave transparency gaps for an extension that records sensitive administrator activity.
61%
Total Score
67
100
86
75
Only two releases exist, with the latest published about 8 months after the initial release; this is a thin release history for a dependency, though the package is still relatively young.
The repository recorded zero commits and zero active maintainers in the last 3 months, indicating currently inactive development despite the recent release.
There were no new issues or pull requests and no merged pull requests in the last month, providing no evidence of active community maintenance.
Composer build tooling is present, but no security-scanning tools were detected; that is a transparency gap for an extension handling administrator activity and login information.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities in an extension that records sensitive admin data.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=100.0.0 | — | — |
magento/module-backend Version >=100.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.