DNSSEC validation with full trust chain verification, RRSIG signatures, and NSEC/NSEC3 proofs
62%
Total Score
caution
Usable with caveats: maintenance is concentrated in one contributor and security transparency is limited.
Eight runtime dependencies create a meaningful dependency surface, although they are presented as related components within the same library ecosystem rather than unexplained external packages.
The artifact overlap with php-standard-library/php-standard-library is very high at about 96%, which is concerning even though the package does not explicitly claim to be that lookalike or describe itself as a fork.
The package is about 4 months old with three releases, including one about 2 months ago; this shows some activity but not yet a mature release history.
All recent commits came from one contributor. Organization backing provides some handoff capacity, but no second active contributor is evidenced in this period.
Only one commit from one active maintainer was recorded in the last three months, showing recent activity but a very thin maintenance signal.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
php-standard-library/dns Version ^6.2 | — | — |
php-standard-library/hash Version ^6.0 | — | — |
php-standard-library/async Version ^6.0 | — | — |
php-standard-library/cache Version ^6.0 | — | — |
php-standard-library/crypto Version ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.