The MIT license and compact Composer-based tree are clear positives, while the absent security policy adds a smaller transparency concern. The package is otherwise simple and has no install-time scripts or registry deprecation.
32%
Total Score
0
60
75
The latest release was in April 2014, with no releases in the last 12 months; this strongly indicates the package is no longer maintained.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with long-term abandonment.
A README is present, and the absence of packaged tests or a changelog is normal for published artifacts; the short README offers limited consumer documentation.
The linked repository name does not match the package name and its README does not mention the package, creating uncertainty about whether it is the package's intended source.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented; the package's long inactivity makes this gap more relevant.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
silex/silex Version ~1.1 | — | — |
symfony/finder Version ~2.3 | — | — |
symfony/console Version ~2.3 | — | — |
symfony/filesystem Version ~2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.