Documentation, repository tests, regular releases, and organization backing support ongoing use. Pin 0.33.0 and watch for renewed repository activity and improved workflow pinning.
72%
Total Score
83
50
100
75
The release declares 22 runtime dependencies, which increases dependency surface and maintenance complexity for a library. The profile is still understandable for a WSDL reader with substantial parsing and console functionality.
The repository recorded zero commits and zero active maintainers during the last three months, which is a meaningful maintenance concern. Recent releases and a recent push partly offset it but do not remove the risk of slowing development.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap, but it is not evidence that the package is unsafe by itself.
All three workflows were analyzed successfully with no dangerous triggers, untrusted checkouts, injection findings, or audit findings. However, all 6 action references are unpinned, leaving avoidable workflow supply-chain hygiene risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
veewee/xml Version ^4.10 | — | — |
php-soap/xml Version ^1.10 | — | — |
php-soap/wsdl Version ^1.19 | — | — |
php-soap/engine Version ^2.20 | — | — |
php-tui/php-tui Version ^0.2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.