It includes a clear README, license, security policy, repository tests, and release notes for this version. The workflow audit found no dangerous findings, although its single action reference is unpinned.
84%
Total Score
100
100
88
100
There were no registry releases in the last 12 months and the latest registry release was about 14 months ago, a mild cadence concern; recent repository commits and the 4.0.0 release provide compensating maintenance evidence.
Composer build tooling is present. No security scanning tool was detected, which is a minor transparency gap but not severe given the available security policy and workflow audit.
All one workflow was analyzed with no failed files, dangerous triggers, untrusted checkouts, script injection, or audit findings. Its one action reference is unpinned, a minor reproducibility and supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
joomla/string Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.