Package Health

viezel/otp

The package includes tests, a changelog, clear licensing, and Psalm scanning. Its workflows have an unpinned container image, and no security policy is published.

Latest 1.0.0PackagistPackagist

42%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historydanger

This is the sole release, published in October 2020, with no releases in the last 12 months; nearly six years without a new release indicates substantial abandonment risk.

Repository archivedcaution

The linked repository is not archived, but its last push was in October 2020, consistent with the stale release history rather than active maintenance.

Security policycaution

No repository security policy is present. For a package handling one-time-password verification, this is a transparency gap, although it is not evidence of a vulnerability by itself.

Workflow auditcaution

All three workflows were analyzed and avoid untrusted checkout and script-injection patterns, but all eight action references are unpinned and the audit found a high-confidence unpinned container image. This leaves the build exposed to changing upstream content.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
illuminate/contracts
Version ^8.0

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform