A long project history, stable release, included tests, and release notes support continued use. Recent repository commits have stopped, while the workflow audit is incomplete and all six analyzed actions are unpinned; no security policy is also a modest gap.
68%
Total Score
50
100
94
83
There were zero commits and zero active maintainers in the last three months, which is a meaningful maintenance concern, although the release and recent repository push provide some compensation.
The repository uses Composer build tooling but reports no security-scanning tools, leaving a modest transparency and detection gap.
The repository has no security policy, so users lack a documented route for reporting vulnerabilities.
The audit analyzed only two of three workflows and one file failed; all six analyzed action references are unpinned. No dangerous triggers, untrusted checkouts, script injection, or audit findings were reported, so this is a hygiene caution rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpseclib/phpseclib Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.