The MIT license, organization backing, and intact source tree improve transparency. The empty README and lack of security scanning leave some practical gaps for adopters.
55%
Total Score
75
67
The artifact includes a README entry, but its recorded length is zero and no tests or changelog are present. Missing tests and changelog are normal packaging practice here, while an empty README weakens consumer guidance.
This package has only one release, published about 14 months ago, with no releases in the last 12 months. That provides little evidence of an established maintenance cadence.
The repository recorded no commits and no active maintainers in the last three months, despite being only about 14 months old. This makes ongoing maintenance uncertain.
The repository name does not match the package name, while README mention status is unavailable. This creates some uncertainty about the package-to-repository linkage, though the repository may be a bundle or monorepo component.
The repository uses Composer for its build tooling, but no security scanning tool was detected. The missing scanning is a modest supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^3.0 | — | — |
symfony/yaml Version ^7.0 | — | — |
symfony/console Version ^5.4|^6.0|^7.0 | — | — |
symfony/property-info Version ^7.0 | — | — |
symfony/monolog-bundle Version ^3.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.