The repository remains active, with 75 commits from 8 contributors in the last 3 months, tests, security tooling, and a security policy. Workflow audits found only low-confidence cache concerns and medium-confidence template-injection hygiene issues.
45%
Total Score
88
100
88
100
Packagist marks the entire package as abandoned and recommends squizlabs/php_codesniffer, creating a substantial dependency and future-support risk despite the active repository.
Recent pull requests and issue activity show an engaged project, although only 1 of 5 new issues was closed in the last month, leaving a sizable backlog.
All 14 workflows were analyzed, all 69 action references are pinned, and no untrusted checkout or script injection was found. Low-confidence cache-poisoning and medium-confidence template-injection findings remain workflow hygiene concerns.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.