Tests, a readme, a clear MIT license, and read-only workflow permissions provide useful baseline transparency. The repository has no security policy, and its sole workflow uses an unpinned action; pin that action before production use.
65%
Total Score
75
100
86
67
This is the package's first release, published 0 days ago, so there is no release track record to establish maintenance reliability yet.
No commits or active maintainers were recorded in the last 3 months; because the repository and package are brand new, this shows limited evidence of sustained maintenance rather than confirmed abandonment.
Composer build tooling is present, but no security scanning tool was detected, leaving security-quality checks less transparent.
The repository has no security policy, so vulnerability reporting and handling expectations are not documented.
The single workflow was fully analyzed, uses read-only permissions, and has no dangerous audit findings. Its only action reference is unpinned, so the workflow has a modest reproducibility and action-integrity gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
controleonline/common Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.