The repository has had no recent commits, and its single maintainer leaves little evidence of ongoing support. It includes tests, documentation, and an MIT license, but lacks a security policy.
18%
Total Score
25
67
83
Packagist marks the package as abandoned at package scope and provides no maintained replacement, which is a severe adoption risk.
The package has only two releases, with the latest published in March 2012 and none in the last 12 months; this strongly indicates abandonment.
The repository recorded zero commits and zero active maintainers in the last three months, providing no evidence of current maintenance.
Only one registry account has publishing access. This is not decisive by itself, but combined with the absent recent activity it leaves little visible maintenance capacity.
The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities in a package that is already inactive.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/symfony Version 2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.