The source includes tests, extensive documentation, release notes, and clear licensing. Five workflow actions are unpinned and no security policy is published.
46%
Total Score
25
75
75
The package has 68 releases and a long history, but its latest release was over four years ago and it had no releases in the last 12 months, indicating likely abandonment.
There were no commits and no active maintainers in the last three months, reinforcing the release-history evidence that maintenance has stopped.
There were no new or merged pull requests and no new or closed issues in the last month. Although issue counts are partly unknown, the observed inactivity adds to the maintenance concern.
The linked repository reports zero stars, forks, and watchers. Popularity is only supporting evidence, but these values provide no community-maintenance buffer for the stale project.
Composer is used for the build, but no security-scanning tools are configured. This is a modest transparency and maintenance gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0 || ^2.0 || ^3.0 | — | — |
ruflin/elastica Version ^7.1 | — | — |
symfony/console Version ^4.4 || ^5.4 || ^6.0 | — | — |
pagerfanta/pagerfanta Version ^2.4 || ^3.0 | — | — |
symfony/property-access Version ^4.4 || ^5.4 || ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.