Its organization backing, package README, and stable release version provide useful context for adoption. There is no security policy or repository security scanning, so maintenance controls are limited.
42%
Total Score
50
63
50
The latest release was January 13, 2021, about 5 years and 8 months before collection, with no releases in the last 12 months. Sixteen releases show earlier activity, but the long current gap is strong abandonment evidence.
The repository recorded no commits or active maintainers in the last 3 months, and its last push was November 28, 2022, nearly 4 years before collection. The linked project is not archived, but current maintenance activity is absent.
Composer build tooling is present, which supports reproducible package management, but no security scanning tools are configured. The tooling is adequate for packaging while leaving security oversight weaker.
The repository has no security policy, leaving vulnerability reporting and maintenance expectations undocumented. This is a meaningful transparency gap for an extension handling comments and notifications.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typo3/cms-core Version ^9.5 || ^10.4 | — | — |
typo3/cms-form Version ^9.5 || ^10.4 | — | — |
zeroseven/z7-blog Version ^1.0 || ^1.1 | — | — |
patrickschur/language-detection Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.