OpenAI provider for PapiAI
76%
Total Score
healthy
Active, transparent project with unpinned GitHub Actions; its 0.x status and missing security controls limit maturity.
The repository has 0 stars and 1 fork, which provides little community validation; however, the package is young and popularity is only supporting evidence, not a health verdict.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest gap in repository assurance.
The repository has no security policy, making vulnerability reporting and maintainer response expectations less transparent.
Version v0.16.1 is not a prerelease, but the package remains below 1.0, so its public API and compatibility expectations are less mature than a stable-major release.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, or audit findings, but all 8 action references are unpinned, weakening build reproducibility and action supply-chain hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
papi-ai/papi-core Version ^0.15.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.