The package has a long release history, stable versioning, tests, release notes, and clear licensing. Recent repository activity is quiet, while one maintainer, seven open issues, and no security policy add maintenance uncertainty.
68%
Total Score
50
100
50
Only one registry account has publish access. Because the repository is user-owned rather than organization-backed, this leaves limited visible publishing redundancy.
The repository recorded zero commits and zero active maintainers in the last three months. Recent releases provide some counterweight, but the current maintenance signal is weak.
Seven issues remain open, with no new or closed issues and no pull-request activity in the last month. This is a modest sign of limited issue maintenance, not abandonment by itself.
The repository has no published security policy. That reduces transparency for reporting and handling vulnerabilities, although it does not by itself show that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
monolog/monolog Version ^3.5.0 | — | — |
contao/core-bundle Version >=5.6.0,<5.8.0 | — | — |
symfony/http-client Version ^6.4 || ^7.0 | — | — |
symfony/http-kernel Version ^6.4 || ^7.0 | — | — |
symfony/framework-bundle Version ^6.4 || ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.