The Hyperf 3.0 Mail package.
46%
Total Score
0
81
67
The package has had no release in more than two years and none in the last 12 months, which is a substantial maintenance concern despite six releases overall.
There were no commits from any active maintainers in the last three months, consistent with a repository that has been inactive since late 2023.
Composer build tooling is present, but no security-scanning tooling was observed, leaving a modest transparency and maintenance gap.
The repository has no security policy, reducing clarity about vulnerability reporting and maintenance response.
The single workflow was fully analyzed with no untrusted checkouts or script injection, but both action references are unpinned and one references an archived action, creating release-workflow supply-chain hygiene concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
hyperf/di Version ^3.0 | — | — |
hyperf/view Version ^3.0 | — | — |
hyperf/event Version ^3.0 | — | — |
hyperf/config Version ^3.0 | — | — |
hyperf/command Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.