The MIT license, clear README, changelog, and matching repository make the package transparent and straightforward to integrate. Its small dependency set and lack of install scripts reduce routine adoption concerns, but they do not offset the maintenance risk.
38%
Total Score
25
100
81
75
The latest release was published in November 2019, and there have been no releases in the last 12 months despite the package being over seven years old. This is strong evidence of abandonment risk for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the release history showing no activity since November 2019. The repository is not archived, but that does not compensate for the prolonged inactivity.
There were no new issues, closed issues, new pull requests, or merged pull requests in the last month. With no recent commits or releases, this supports a conclusion of inactive maintenance rather than healthy stability.
The repository uses Composer, showing basic build tooling, but no security scanning tools were detected. This is a modest hygiene gap, though the much larger concern is the lack of recent maintenance.
No repository security policy was found. That weakens vulnerability-reporting transparency, although it is secondary to the prolonged release and commit inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/debug Version ^3|^4 | — | — |
symfony/finder Version ^3|^4 | — | — |
maximebf/debugbar Version ~1.15.0 | — | — |
illuminate/routing Version 5.5.x|5.6.x|5.7.x|5.8.x|^6.0 | — | — |
illuminate/session Version 5.5.x|5.6.x|5.7.x|5.8.x|^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.