Package Health

ibexa/rest

Ibexa REST bundle

Latest v5.0.10PackagistPackagist

78%

Total Score

healthy

Healthy release with active maintenance, but workflow credential scope and unpinned actions add supply-chain risk.

Health Score Breakdown

Workflow auditcaution

The audit analyzed all seven workflows without failures and found no untrusted checkouts or script injection, but it also found two high-confidence broad GitHub app permissions, two high-confidence secrets-inherit findings, and all 13 action uses unpinned. These are meaningful workflow hygiene and credential-scope concerns, although no dangerous trigger-and-sink combination was observed.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version ^3.0
—
—
ibexa/core
Version ~5.0
—
—
symfony/form
Version ^7.4
—
—
symfony/yaml
Version ^7.4
—
—
symfony/config
Version ^7.4
—
—

Weekly Downloads

Info

Last Published
1 month ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform