It has an MIT license, a usable README, and only two runtime dependencies. No repository security scanning or security policy is present, so there is limited supporting transparency.
12%
Total Score
0
100
50
75
Packagist marks the entire package as abandoned, with no replacement specified. This is a direct warning against taking a new dependency on it.
The package has 43 releases, but none in the last 12 months; its latest release was in May 2018. The early release cadence does not compensate for the long period without releases.
The repository recorded no commits and had no active maintainers in the last three months, consistent with abandonment rather than ongoing maintenance.
The source repository is archived and was last pushed in June 2018, so it is no longer an active maintenance base.
Composer build tooling is present, but no security scanning tooling was detected. The build setup is a small positive, while the absent scanning is a modest transparency gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/process Version ^3.0 | — | — |
symfony/filesystem Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.