The package includes a clear MIT license, useful documentation, release notes, and repository tests. Its dependency is nevertheless unsuitable for new adoption because the project has no recent maintenance or security policy.
12%
Total Score
50
50
56
75
Packagist marks the entire package as abandoned, with no replacement package provided. Package-level deprecation is a severe adoption risk.
Only two releases exist, and there have been no releases in the last 12 months; the latest release was in November 2017. This is strong evidence of abandonment for a library with runtime framework dependencies.
There were zero commits and zero active maintainers in the last three months. Combined with the archived repository and 2017 last push, this confirms abandonment rather than a temporary pause.
The linked repository is archived and was last pushed in November 2017. An archived source repository indicates the project is no longer maintained and is a severe dependency risk.
The package declares six runtime dependencies, including Symfony security and LDAP components. This creates compatibility and maintenance exposure when the package itself is no longer maintained.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/ldap Version ^2.8 || ^3.0 | — | — |
symfony/security Version ^2.8 || ^3.0 | — | — |
symfony/property-access Version ^2.8 || ^3.0 | — | — |
symfony/security-bundle Version ^2.8 || ^3.0 | — | — |
doctrine/doctrine-bundle Version ^1.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.