The package includes tests, a changelog, release notes, documentation, and a license file. Organization backing and two active contributors provide continuity, but the package’s repository identity and workflow pinning need attention.
62%
Total Score
100
100
67
83
The repository is named acp and its README describes ACP, while neither the repository name nor README mentions aop-sdk. This raises concern that the linked source may not actually correspond to the package.
The package has existed since May 2022 and released version 0.3.6 in August 2026, but only one release occurred in the last 12 months, indicating a slow cadence.
The repository has no stars and one fork. Popularity is limited, but this is supporting evidence rather than a health verdict.
Composer build tooling is present, but no security scanning tool was detected, leaving a modest security-process gap.
No repository security policy was found, reducing transparency for vulnerability reporting and response.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/finder Version ^5.3 || ^6.0.0 || ^7.0.0 | — | — |
composer/semver Version ^3.0 | — | — |
symfony/console Version ^5.3.0 || ^6.0.0 || ^7.0.0 | — | — |
spryker-sdk/spryk Version ^0.4.0 || ^0.5.0 | — | — |
spryker-sdk/sync-api Version ^0.1.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.