The source is minimal and offers little consumer guidance, with no README, tests, or security policy. Recent repository activity is absent, and the repository does not clearly mention this package. MIT licensing, a non-deprecated registry entry, and a GitHub release provide some reassurance.
44%
Total Score
50
60
50
The package was last released in July 2017 and has had no releases in the last 12 months, leaving this version substantially behind current maintenance activity.
The artifact has no README, while the repository also reports no tests or changelog; the absence of tests and changelog is normal packaging practice, but the missing consumer documentation is a minor gap. A GitHub release exists for this version.
The repository recorded zero commits and zero active maintainers in the last 3 months. The recent push timestamp is some contrary evidence, but it does not show ongoing development in the measured period.
The repository name does not match the package name and the README does not mention the package, so ownership of this package is not clearly demonstrated by the linked source.
The linked repository has no security policy, reducing the transparency of vulnerability reporting for a package intended for application integration.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
contao/core-bundle Version ~4.4 | — | — |
symfony/framework-bundle Version ~2.8|~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.