Package Health

popphp/pop-acl

Pop ACL Component for Pop PHP Framework

Latest 5.0.2PackagistPackagist

70%

Total Score

caution

Usable with caveats: all recent commits come from one contributor and workflow actions are unpinned.

Health Score Breakdown

Repo bus factorcaution

All 9 recent commits came from one contributor, giving the project a low independent review and handoff capacity. Organization backing partly compensates, but does not eliminate the continuity concern.

Repo toolingcaution

Composer build tooling is present, but no repository security-scanning tools were detected. For an access-control library, that is a meaningful transparency and maintenance gap.

Security policycaution

The repository has no security policy. This leaves vulnerability reporting and disclosure expectations unclear for a security-relevant authorization component.

Workflow auditcaution

The single workflow was fully analyzed with no audit findings or untrusted execution sinks, but all 3 action references are unpinned. The absence of a top-level permissions block is acceptable on its own, while unpinned actions remain a modest reproducibility and supply-chain hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nick Sagona, III

Direct Dependencies

DependencyLast ReleaseScore
popphp/pop-utils
Version ^3.0.0
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform