The package includes a substantial README, tests, release notes, MIT licensing, and security scanning. Its single-author project and unpinned workflow references provide less resilience for future maintenance.
62%
Total Score
67
100
89
83
Only one registry publishing account is listed, leaving limited visible publishing redundancy; the matching source repository owner supports attribution but does not broaden the maintainer base.
The package has six releases but none in the last 12 months, and its latest release was about 20 months ago; this materially raises maintenance and abandonment concerns.
There were no commits and no active maintainers in the last three months, consistent with roughly 20 months since the latest push and indicating stalled maintenance.
The repository has one star and no forks, providing little independent adoption evidence; this is supporting evidence only and does not outweigh the package's complete structure.
No repository security policy was found, leaving vulnerability-reporting expectations unclear for a package that processes application logs.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/yaml Version ^5.4 || ^6.4 || ^7.1 | — | — |
symfony/console Version ^5.4 || ^6.4 || ^7.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.