A POP3 client in plain PHP: SSL or STARTTLS, certificate checks you control, password, APOP or OAuth sign-in, unique ids, headers or whole messages, and deletion only when asked. No extensions, no dependencies.
76%
Total Score
healthy
A well-documented, tested package, but its maintenance history is brand new and its workflow has an unpinned container image.
The package has only 2 releases and is less than 1 day old, so its release cadence and long-term maintenance record are not yet established. The second release arriving shortly after the first shows initial activity but does not compensate for the lack of history.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a modest transparency and hygiene gap for a package handling mail authentication and transport.
The repository has no security policy. This does not show unsafe code, but it gives users no documented reporting or response path.
The single workflow was fully analyzed and has no untrusted checkout or script-injection path, but its two action references are unpinned and the audit found a high-confidence unpinned container image using the floating latest tag. This weakens build reproducibility and supply-chain hygiene.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.