Method redefinition (monkey-patching) functionality for PHP.
82%
Total Score
88
100
100
67
The registry namespace and repository are owned by the same individual account, so there is no organization-level handoff capacity shown. Recent activity from two contributors partly offsets that limitation.
The repository has no security policy file. This is a transparency gap for a package that performs PHP code and callable redefinition, though active maintenance and dependency scanning provide some compensation.
All three workflows were analyzed successfully, use read-only permissions, and pin all 13 action references. The audit still found a floating container image and a high-confidence template-injection pattern, which are workflow hygiene concerns but lack the untrusted trigger or sink evidence needed to treat them as severe supply-chain risks.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.