The package is small, clearly documented, and has a stable MIT declaration. Treat it as legacy infrastructure and verify compatibility with your Symfony and Twig versions before adoption.
54%
Total Score
50
75
50
The package has only two releases, with the latest published in January 2022 and no releases in the following four years and eight months. This indicates a legacy, poorly maintained release cadence.
The repository recorded no commits and no active maintainers in the last three months, consistent with the long gap since the latest release. The repository is not archived, but current maintenance is not evident.
The repository name does not match the package name and its README does not mention the package, creating some uncertainty about whether the linked repository is the intended project source.
The repository has no security policy. For a small package this is a transparency gap rather than evidence of unsafe code, but it provides no documented channel or process for reporting vulnerabilities.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version * | — | — |
symfony/finder Version * | — | — |
symfony/framework-bundle Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.