The README and complete project tree make the intended starter application clear, while no install-time scripts add little execution risk. Its broad dependency set and absent security tooling increase upkeep concerns. Pin this version only if you can maintain its older stack yourself.
38%
Total Score
0
50
78
75
The last release was in April 2020, with no releases in the past 12 months despite 19 releases overall. This long gap is strong evidence of abandonment risk for a framework starter package.
The repository recorded zero commits and zero active maintainers in the past three months, consistent with the release gap and providing no evidence of ongoing maintenance.
The package declares 17 runtime dependencies across the framework, templating, mail, sessions, caching, translation, and frontend-related stack. That breadth increases maintenance and compatibility burden for an unmaintained project.
The repository has zero stars and forks and only one watcher. Popularity is not decisive, but these counters provide no supporting evidence of active community maintenance.
Composer is present as a build tool, but the repository reports no security scanning tools. That is a meaningful hygiene gap for a package with many runtime dependencies.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
slim/slim Version ^3.1 | — | — |
slim/flash Version ^0.1.0 | — | — |
mnapoli/silly Version 1.5.* | — | — |
slim/twig-view Version ^2.2 | — | — |
gettext/gettext Version ^4.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.