Yet another RDF library
68%
Total Score
67
100
93
75
No commits and no active maintainers were recorded in the last 3 months, a meaningful maintenance concern despite the recent repository push and release history.
There is one open issue and no issue or pull-request activity in the last month, offering little evidence of active community maintenance.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest review and detection gap.
The repository has no security policy, making vulnerability reporting and response expectations less transparent.
Both workflows omit a top-level permissions block and all 8 analyzed action references are unpinned. The low-confidence cache-poisoning finding is hygiene rather than a severe risk, and no untrusted checkout or script-injection sink was found.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sweetrdf/rdf-helpers Version ^2 | — | — |
zozlak/rdf-constants Version ^1.1 | — | — |
sweetrdf/rdf-interface Version ^2 | ^3 | — | — |
sweetrdf/term-templates Version ^2.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.