Popper.js Bundle for Symfony3+
38%
Total Score
unhealthy
Risky: no release or repository activity for about eight years, leaving the package effectively abandoned.
This is the only release, published about eight years ago, with no releases in the last 12 months. That strongly indicates abandonment risk despite the stable 1.0 version.
The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap and providing no evidence of ongoing maintenance.
The repository has zero stars and forks and one watcher, offering little supporting evidence of community review or adoption. Popularity is only supporting evidence, so this does not determine the verdict alone.
Composer is used as a build tool, but no security-scanning tooling is present. This is a minor transparency gap, not a standalone severe risk.
The repository has no security policy. For this small, inactive asset bundle that is a transparency gap, although the stronger concern remains its prolonged lack of maintenance.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.