The repository includes tests and a changelog, has organizational backing, and is not archived. All six workflow actions are unpinned and no security policy is provided, leaving avoidable maintenance and transparency gaps.
46%
Total Score
50
71
75
This package has made only one release, with the latest published about 2 years and 1 month ago and none in the last 12 months. That is strong evidence of limited ongoing maintenance.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and increasing abandonment risk.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance weakness, not evidence of an unsafe package by itself.
No security policy was found in the repository, so there is no documented process for reporting or handling vulnerabilities.
The assessed version is a prerelease, and all recent releases are prereleases. Consumers should expect less stability than from a final release.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nette/utils Version 4.* | — | — |
ramsey/uuid Version ^4.2 | — | — |
doctrine/orm Version ^3.0 | — | — |
doctrine/dbal Version ^3.0 | ^4.0 | — | — |
symfony/cache Version ^6 | ^7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.