The repository has only 6 stars and no security policy or scanning, limiting evidence of ongoing care. MIT licensing, tests, and a README make the contents understandable, but do not offset the age.
42%
Total Score
0
50
78
50
The package has had no release in more than seven years, with zero releases in the last 12 months. This is strong evidence of abandonment for a Symfony boilerplate that users may need to keep compatible.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with its last push in February 2019. No newer activity compensates for this prolonged inactivity.
The package declares 19 runtime dependencies, including Symfony, Doctrine, and event-store components. That breadth increases compatibility and maintenance demands, which are harder to manage given the absent recent activity.
The repository has 6 stars and 2 forks, providing little supporting evidence of broad review or community maintenance. Low popularity alone is not disqualifying, but it does not compensate for the stale project.
Composer build tooling is present, but no security-scanning tools were detected. That leaves the long-unmaintained project with limited automated evidence of ongoing dependency or code hygiene.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
ramsey/uuid Version ^3.8 | — | — |
symfony/flex Version ^1.1 | — | — |
symfony/yaml Version 4.2.* | — | — |
symfony/dotenv Version 4.2.* | — | — |
symfony/console Version 4.2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.