Usable with caveats: the package is clearly licensed, documented, correctly backed by an active repository, and has a stable release with tests in the source project. It is still very young, maintained by one contributor, and lacks a security policy with limited recent activity.
68%
Total Score
50
100
88
80
Only one registry account has publish access. This is consistent with the repository being user-owned, but it leaves publishing continuity dependent on a single person.
The registry package and repository are both owned by the same individual user, confirming direct ownership but offering no organizational maintenance redundancy.
This is a very young package, only 50 days old, with two releases published within about one day; that provides limited evidence of long-term maintenance stability.
One contributor made 100% of the two recent commits, creating a high concentration of maintenance knowledge and responsibility without organization backing.
The repository recorded two commits from one active maintainer in the last three months. Activity exists, but the small amount of recent work provides only limited evidence of sustained maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/console Version ^7.4 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.