The package is straightforward to consume and includes clear documentation. Organizational backing, recent maintenance, and a security policy support continued care, while workflow references remain unpinned.
88%
Total Score
100
100
93
100
Composer and Phing provide build tooling, but no security-scanning tool was detected; this is a modest repository hygiene gap rather than evidence of abandonment.
All 6 workflows were analyzed successfully with no dangerous audit findings, untrusted checkouts, or script injection. However, all 9 analyzed action references are unpinned, leaving a minor reproducibility and action-supply-chain hygiene concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ray/di Version ^2.19 | — | — |
ray/aop Version ^2.18 | — | — |
koriym/null-object Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.