The repository has no security scanning or policy, and installation runs a project-creation hook. Its stable skeleton is documented and organization-backed, but release and commit activity has stopped.
57%
Total Score
75
83
75
The package runs a post-create-project command during installation, so adopting it executes publisher-provided setup code. This is expected for a Composer project template but still warrants care.
The package has had no releases in the last 12 months, with the latest release in August 2024 despite a history beginning in 2021. This materially raises abandonment risk.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, indicating no recent maintenance activity. The December 2024 push provides only limited compensation.
The repository has 0 stars and 1 fork, indicating limited visible adoption. Popularity is supporting evidence only, so this modestly limits confidence rather than determining the health verdict.
Composer build tooling is present, but no security scanning tools were detected. For a project skeleton that supplies deployment and environment files, this is a meaningful hygiene gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.