Organizational backing, a maintained release trail, tests, and security scanning support continued use. The repository has no security policy, and all three workflow actions are unpinned, leaving avoidable maintenance and build-integrity gaps.
67%
Total Score
75
94
75
The repository recorded 0 commits and 0 active maintainers in the last 3 months. Although a release was published recently, the lack of observed commit activity is a meaningful maintenance concern.
The repository has 0 stars and 0 forks, with 1 watcher. Popularity is only supporting evidence, but these very low engagement levels provide little external evidence of project maturity.
The repository has no SECURITY.md or other declared security policy. For a web stack with authentication and security components, this weakens vulnerability-reporting transparency.
The single workflow was fully analyzed with no dangerous triggers, sinks, or audit findings, but all 3 action references are unpinned. The missing top-level permissions block is acceptable here because the workflow does not request top-level write access.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version >=2.0 | — | — |
slick/di Version ^2.0@dev | — | — |
slick/http Version >=3.0 | — | — |
slick/fswatch Version ^0.1.0@dev | — | — |
symfony/config Version ^7.2.x-dev | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.