The package is small and clearly documented in its repository, with tests, release notes, licensing, and security tooling. Recent commit inactivity and broad, unpinned workflow configuration weaken confidence in ongoing maintenance and build hygiene.
68%
Total Score
83
100
100
100
The repository recorded zero commits and zero active maintainers in the last three months. Recent merged pull requests and a recent release partly offset this, but the absence of direct commit activity is a maintenance concern.
All six workflows were analyzed with no untrusted checkouts or script injection, but all nine action references are unpinned and three workflows grant top-level write permissions; high-confidence secrets-inherit findings add workflow hygiene risk without indicating a severe issue on their own.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
phpolar/storage Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.