The package includes a README, while the repository has tests, active build tooling, and security scanning. Organizational ownership and two recent contributors help offset the narrow registry release history, but workflow dependencies are not pinned.
72%
Total Score
100
83
50
Only two releases are recorded, with the latest nearly seven years ago and none in the last 12 months. Recent repository commits provide some compensation, but the published release remains old.
No repository security policy was found. This is a transparency gap, but it is modest given the reported security scanning and active repository maintenance.
The single workflow was fully analyzed and has no untrusted checkouts, injection findings, or excessive top-level permissions. Both action references are unpinned, leaving a supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/event-dispatcher Version >=2.8.26 | — | — |
detain/myadmin-plugin-installer Version dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.