Usable with caveats: the release is mature, actively published, and backed by an organization, with recent repository activity and two active contributors. Verify that the linked OpenPA repository actually publishes openpa-ls, because it neither matches the package name nor mentions it in the README; the repository also lacks a security policy.
73%
Total Score
100
100
83
83
The repository name does not match opencontent/openpa-ls and its README does not mention the package, creating a concrete concern that the release may not be directly backed by the linked source repository.
The repository has only 3 stars and 3 forks, so external adoption evidence is limited; this is supporting evidence rather than a decisive health problem.
Composer is used for builds, but no security scanning tools are reported; the build process is identifiable while automated security coverage is limited.
No repository security policy is present, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
predis/predis Version ^2.0@dev | — | — |
aws/aws-sdk-php Version 3.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.