Ratelimit certain actions, such as username + password login
60%
Total Score
75
93
50
The package has five releases over about six years, but none in the last 12 months and its median release interval is about 440 days. This indicates a slow release pace and raises some abandonment concern, though the latest release is relatively recent rather than withdrawn.
The repository recorded no commits and no active maintainers in the last three months, consistent with the package's extended release gap. This weakens evidence of ongoing maintenance.
No security policy was found in the repository. For a module handling authentication rate limiting, this is a transparency gap that makes vulnerability reporting and response expectations less clear.
The single workflow was fully analyzed with no untrusted checkouts, injection findings, or excessive permissions, but all 19 action references are unpinned. That leaves the build more exposed to upstream action changes than necessary.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
simplesamlphp/assert Version ~1.8 | — | — |
symfony/http-foundation Version ^6.4 | — | — |
simplesamlphp/simplesamlphp Version ~2.3 | — | — |
simplesamlphp/composer-module-installer Version ~1.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.