Organization backing and six releases over ten months provide some continuity. The missing license and three months without commits leave important adoption and maintenance questions; pin this version only after confirming those gaps are acceptable.
55%
Total Score
75
100
78
50
No license declaration, recognized license, or license file was found in the package or repository, leaving the legal terms for reuse unclear.
The repository recorded no commits and no active maintainers in the last three months, a meaningful sign that maintenance may have slowed after the latest release.
The repository has zero stars, forks, and watchers. This is only supporting evidence, but it provides no external adoption signal to offset the limited maintenance history.
Composer is used for builds, but no security scanning tools were detected, leaving security-process maturity unclear.
The repository has no published security policy, reducing transparency about how vulnerabilities are reported and handled.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/console Version ^6.4 || ^7.4 || ^8.4 | — | — |
atto/codegen-tools Version ^0.1.0 | — | — |
roave/better-reflection Version ^6.25 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.