Dummy project for self-update Composer plugin
63%
Total Score
caution
Usable with caveats: no release or repository activity since March 2024.
The package has had no release in 929 days, with four releases concentrated on its initial release date. This indicates a dormant release line, although the package may be intentionally stable.
There were zero commits and zero active maintainers in the last three months, consistent with the package's long period without releases and raising abandonment concern.
Composer build tooling is present, but no security-scanning tooling was detected. The missing scanner is a modest transparency and maintenance gap.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented.
No GitHub Actions workflows were present, so the audit found no workflow risks. This also means there is no observed automated workflow coverage to support build or release assurance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yceruto/self-update-plugin Version dev-main | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.