The README is clear and the package has a small, understandable dependency surface. It lacks repository tests, security scanning, and a security policy, while recent publishing and organizational backing reduce abandonment concerns.
82%
Total Score
88
100
83
75
The artifact includes a substantial README explaining installation and usage, which is important for this integration library. Tests and a changelog are absent from both the package and repository, leaving limited verification and release documentation.
There were no commits and no active maintainers in the most recent 3 months. Because the release history shows four releases in the last year and the latest push matches the assessed release, this is a modest maintenance concern rather than strong abandonment evidence.
The repository has no stars or forks and only one watcher. Popularity is supporting evidence rather than a requirement, but these counts provide little external adoption evidence.
The repository uses Composer for builds, which fits the package ecosystem. No security scanning tools are configured, leaving a modest transparency and maintenance gap.
The repository has no security policy. This weakens the documented process for reporting and handling vulnerabilities, though it does not by itself show unsafe code or abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/http-foundation Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.