Clear documentation, tests, and an MIT declaration make the package easier to adopt. Its organization backing and matching repository add traceability, but the absent security policy leaves a smaller transparency gap.
48%
Total Score
75
90
50
The package has 47 releases, but none in the last six years; the long release gap is a substantial abandonment concern despite its established history.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the prolonged release gap and leaving maintenance capacity unproven.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented; the available maintenance evidence does not compensate for that transparency gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/common Version ^2.7.2 | — | — |
symfony/http-kernel Version ^3.4|^4.3 | — | — |
symfony/event-dispatcher Version ^3.4|^4.3 | — | — |
comsave/salesforce-bundle Version ^3.4.5 | — | — |
symfony/dependency-injection Version ^3.4|^4.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.