Create and validate signed URLs in Spiral Framework
68%
Total Score
75
100
100
75
The repository recorded zero commits and zero active maintainers in the last three months. The recent 1.1.0 release and December repository push provide some compensation, but current maintenance momentum is still a concern.
No security policy is present in the repository. This is a transparency gap for a package that handles signed URLs, although automated dependency and static-analysis tooling partly supports its security posture.
Both workflows were fully analyzed with no audit findings, dangerous triggers, untrusted checkouts, or script injections. However, all eight action references are unpinned, leaving a meaningful reproducibility and action-integrity gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
spiral/boot Version ^3.0 | — | — |
spiral/http Version ^3.0 | — | — |
spiral/router Version ^3.0 | — | — |
psr/http-message Version ^1.0||^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.