The package is clearly licensed and has a focused artifact with a usable README. Nearly six years have passed since the latest registry release, and the repository had no commits or active maintainers in the last three months. Its repository is not archived and the package is not deprecated, but maintenance evidence is too weak for a new dependency.
42%
Total Score
0
79
100
The package has only four releases and none in the last 12 months; the latest release was nearly six years ago, which is a substantial abandonment concern.
The repository recorded zero commits and zero active maintainers in the last three months, providing no evidence of current maintenance.
The repository has zero stars and zero forks, with only one watcher. Popularity is supporting evidence rather than decisive, but this offers little external evidence of project maturity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.0 | — | — |
symfony/translation Version ^4.0 | — | — |
symfony/security-bundle Version ^4.0 | — | — |
symfony/framework-bundle Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.