Healthy and backed by an active organization, with a recent release, working tests, and automated security checks. The repository lacks a security policy and has some broadly permissive workflow settings, but there is no deprecation, archive status, or dangerous workflow pattern.
82%
Total Score
75
100
100
80
There were no commits and no active maintainers in the three months measured, which is a maintenance warning. The recent release and repository push partly compensate, suggesting the module may simply be stable rather than abandoned.
No repository security policy was found, leaving vulnerability-reporting expectations and response guidance undocumented.
Two of three workflows lack top-level token permissions and one workflow declares top-level write access, which is less restrictive than ideal. The separate workflow-risk analysis found no dangerous checkout or injection pattern, limiting the concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
simplesamlphp/assert Version ^2.0 | — | — |
simplesamlphp/simplesamlphp Version ^2.5@dev | — | — |
simplesamlphp/composer-module-installer Version ^1.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.