This is a healthy, established package with a stable 1.18.0 release, a six-year release history, recent publication, an active non-archived organization-backed repository, and repository tests and changelog coverage. The main reservations are modest recent commit volume, absent repository security scanning and security policy, and workflows that do not declare top-level token permissions; these merit review but do not outweigh the package's maintenance and transparency evidence.
83%
Total Score
83
100
94
80
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
async-aws/core Version ^1.0 | — | — |
symfony/config Version ^4.4 || ^5.0 || ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/http-kernel Version ^4.4 || ^5.0 || ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/dependency-injection Version ^4.4 || ^5.0 || ^6.0 || ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.