Package Health

altis/local-server

Local Server module for Altis

Latest 28.0.3PackagistPackagist

68%

Total Score

caution

Usable with caveats: high-confidence workflow template-injection findings reduce release trust.

Health Score Breakdown

Workflow auditdanger

Both template-injection findings were high-confidence and high-severity in release and tagging workflows, while all seven action references are unpinned and one workflow installs an ad hoc package. The pull_request_target workflow had no untrusted checkout or script-injection sink, so that trigger is not independently dangerous.

Licensecaution

The manifest declares GPL-2.0-or-later, but the artifact contains an MIT license file under docker; the mismatch creates licensing ambiguity despite the presence of a license file.

Security policycaution

No repository security policy was found, leaving vulnerability-reporting and response procedures less transparent.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Human Made

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ~6.4.45
—
—
symfony/console
Version ^5.4.47
—
—

Weekly Downloads

Info

Last Published
14 days ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform