Server-Side Request Forgery (SSRF) protection plugin for HTTPlug
68%
Total Score
caution
Usable with caveats: release activity has slowed and recent commits come from one contributor.
The package and repository are owned by an individual account rather than an organization, so the single-contributor concentration is not offset by visible organizational backing.
The package has six releases since November 2017, but none in the last 12 months and the latest release is over a year old, indicating slowing maintenance.
One contributor made all commits in the last three months, leaving maintenance dependent on a single active person.
Only one commit was recorded in the last three months, so direct maintenance activity is currently sparse.
No SECURITY.md or other repository security policy was found, leaving vulnerability reporting and handling less transparent.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
php-http/message Version ^1.13 | — | — |
psr/http-factory Version ^1.0 | — | — |
psr/http-message Version ^1.0 || ^2.0 | — | — |
php-http/discovery Version ^1.15 | — | — |
php-http/client-common Version ^2.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.