Its license, README, tests, and changelog support a transparent project, and the source repository is still active. The single-contributor history, repository mismatch, and unpinned workflow actions add adoption risk.
22%
Total Score
50
70
75
The registry marks the entire package as abandoned and names duncan3dc/mailer as its replacement. This is a severe adoption risk even though the assessed release is stable.
All recent commit activity came from one contributor, with a 100% top-contributor share. This leaves maintenance dependent on a single person.
The repository had only 1 commit in the last 3 months, indicating limited recent maintenance activity despite a recent push.
The linked repository is named duncan3dc/mailer, does not match duncan3dc/swiftmailer, and does not mention this package in its README. That weakens confidence that the repository directly represents this package.
The repository has no security policy. This is a transparency and vulnerability-reporting gap for a package that sends email.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/mailer Version ^5.4 || ^6.0 || ^7.0 || ^8.0 | — | — |
duncan3dc/blade Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.