Healthy and suitable to depend on. It has frequent stable releases, an active unarchived organization-backed repository, tests, release notes, and clear package alignment; the main caveats are missing security policy and security scanning, plus broad workflow write permissions.
86%
Total Score
100
100
89
80
The repository has only 2 stars and 4 forks, so external adoption evidence is limited, but low popularity alone does not outweigh the strong release and maintenance evidence.
Composer build tooling is present, but no security scanning tools were detected, leaving a security-process gap in the repository.
No repository security policy was found, reducing transparency about vulnerability reporting and response procedures.
The sole workflow declares top-level write permissions. Although no dangerous workflow patterns were detected, broader-than-read permissions increase the potential impact of a workflow compromise.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
robtimus/multipart Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.