The repository has no security policy or security-scanning tooling, and installation runs post-install and post-update scripts. Its broad 47-package runtime dependency set also increases upgrade and maintenance burden.
58%
Total Score
75
50
88
67
The package declares 47 runtime dependencies and 14 development dependencies, creating a substantial upgrade and transitive maintenance surface for a project template.
post-install-cmd and post-update-cmd scripts run during dependency operations, increasing installation complexity and the amount of package behavior that must be trusted.
Fourteen releases over about 801 days show an established project, but only two releases in the last 12 months indicate a slower current cadence.
There were zero commits and zero active maintainers in the last three months, a concrete sign of currently inactive maintenance despite the repository remaining available.
Make and Composer build tooling are present, but no security-scanning tools were detected, leaving repository security hygiene less transparent.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.12|^3.0 | — | — |
doctrine/orm Version ^2.11 | — | — |
symfony/flex Version ^2 | — | — |
symfony/form Version ^7.0 | — | — |
symfony/intl Version ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.