The generated client has no security scanning or security policy, and its repository shows no recent issue or pull-request activity. Its Apache-2.0 declaration, focused file tree, README, and matching repository provide useful transparency.
42%
Total Score
50
75
50
This package has had one release, published nearly five years ago, with no releases in the last 12 months. That leaves its compatibility with current Amazon API behavior uncertain and is a substantial maintenance concern.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the single old release, this suggests the project is not being maintained.
There were no new or closed issues or pull requests in the last month. This is supporting evidence of inactivity, although the absence of open issues alone is not negative.
The project uses Composer, but no security scanning tools are reported. That reduces automated coverage for dependency and repository risks, while the build tooling itself is appropriate.
The repository has no security policy. For a client handling Amazon API credentials, this is a transparency and vulnerability-reporting gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
allansun/openapi-runtime Version ^2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.