Documentation and packaging are in good shape for integration. The registry has had no release in nearly seven years, while the repository remains active; unpinned workflow actions and no security policy add smaller transparency concerns.
72%
Total Score
100
94
75
The package has had no registry release in nearly seven years and has published no releases in the last 12 months. Active repository commits partly compensate for the stale registry cadence, but the release gap remains a maintenance concern.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented. This is a transparency gap, not evidence of unsafe code.
The single workflow was fully analyzed with no injection or high-severity findings, but both of its two action references are unpinned. The absence of a top-level permissions block is acceptable here; unpinned actions remain a supply-chain hygiene concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/event-dispatcher Version >=2.8.26 | — | — |
detain/myadmin-plugin-installer Version dev-master | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.