Assertions to validate method input/output with nice error messages.
88%
Total Score
healthy
Long-lived, actively released package with organization backing and a matching, maintained source repository.
One contributor made all three commits in the last three months, giving the recent work a single-contributor bus factor and increasing continuity risk.
The repository received three commits in the last three months, but all were made by one active maintainer, so recent maintenance is present but limited.
Composer build tooling is used, but no security scanning tools are reported; the missing scanning is a modest transparency gap rather than evidence of abandonment.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented.
The single workflow was fully analyzed with no audit findings or untrusted execution sinks, but all six action references are unpinned, weakening build reproducibility and supply-chain controls.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.