The repository has two active contributors with an even commit split, and the dependency footprint is minimal. The small project lacks security policy documentation and has limited consumer-facing documentation.
68%
Total Score
100
100
75
50
No package declaration, license file, or repository license file was detected, leaving the terms for using this dependency unclear.
This project has no README, tests, or changelog in the package or repository, although the exact release has GitHub release notes documenting its change.
The repository name does not exactly match the package name, and no README package mention was available, creating some uncertainty about the package-to-repository relationship.
Composer is used for builds, but no security scanning tool was detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, so reporting and handling of vulnerabilities is not documented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
altis/altis Version ^28.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.