The repository includes tests, a changelog, clear documentation, and dependency scanning. Its single release was over two years ago, commits have stopped, and CI has high-confidence workflow hygiene issues.
55%
Total Score
75
100
94
67
This package has only one release, published 2 years 4 months ago, with no releases in the last 12 months. That strongly limits evidence of ongoing maintenance.
There were no commits and no active maintainers during the last 3 months, consistent with the package's one-release history and indicating stalled maintenance.
The repository has no security policy. This is a transparency gap for a package that renders application error pages, although it is less serious than evidence of abandoned code.
All 15 action references are unpinned, and the audit found high-confidence bot-condition and unpinned-container-image findings. The pull_request_target workflow has top-level write permissions, but no untrusted checkout or script injection was detected.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/console Version ^5.4|^6.0|^7.0 | — | — |
spatie/backtrace Version ^1.5.3 | — | — |
symfony/var-dumper Version ^5.4|^6.0|^7.0 | — | — |
spatie/flare-client-php Version ^1.4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.