OXID eSales GraphQL base module
86%
Total Score
healthy
Healthy, with a minor workflow-hygiene concern from an archived action and four unpinned action references.
No repository security policy was found, which is a transparency gap for a module handling authentication and JWTs. The available Sonar scanning partly offsets this but does not replace a reporting policy.
All four workflows were analyzed without untrusted-code sinks, but all four action references are unpinned and one archived action was found with high confidence. These are workflow hygiene and reproducibility concerns, not standalone adoption blockers.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
lcobucci/jwt Version ^5.0 | — | — |
symfony/cache Version * | — | — |
lcobucci/clock Version ^3.0 | — | — |
myclabs/php-enum Version ^1.8 | — | — |
ecodev/graphql-upload Version ^7.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.