The repository has no security policy, and all 21 workflow action references are unpinned. A license, repository tests, and release notes provide useful transparency, while the package remains stable and is not archived.
58%
Total Score
75
86
50
The package has 19 releases since December 2015, but none in the last two years and nine months; this is a meaningful maintenance concern.
There were zero commits and zero active maintainers in the last three months, reinforcing the risk that maintenance has stopped.
The repository uses Make and Composer, but no security scanning tooling was detected, leaving a modest transparency and maintenance gap.
No security policy was found in the repository, so there is no documented process for reporting or handling vulnerabilities.
The single workflow was fully analyzed with no dangerous triggers or audit findings, but all 21 action references are unpinned, weakening build reproducibility and supply-chain hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nette/di Version ^3.0 | — | — |
giggsey/libphonenumber-for-php Version ^8.12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.