The package has had no release for nearly four years, and its repository shows no recent commits or active maintainers. It also lacks consumer documentation and automated security scanning, while its organization backing and stable version provide limited reassurance.
39%
Total Score
0
69
75
The latest release was published nearly four years ago, with no releases in the last 12 months. Although the package had five releases and a regular early cadence, the current inactivity is a substantial maintenance concern.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the long release hiatus rather than showing ongoing maintenance.
The package has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README is a real usability and transparency gap for a Symfony integration package.
The repository has zero stars and forks and only one watcher. Popularity is not decisive for a small package, but these counters provide no supporting evidence of community adoption or review.
Composer is used for the build, which fits the ecosystem, but no security-scanning tooling is present. This is a modest hygiene gap rather than evidence of abandonment by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^2.9 | — | — |
symfony/asset Version 5.4.* | — | — |
doctrine/annotations Version ^1.0 | — | — |
doctrine/doctrine-bundle Version ^2.4 | — | — |
symfony/framework-bundle Version ^5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.