Usable with caveats: it is a small, clearly identified MIT package with a working release, but it has had no release or repository activity for over four years. Depend on it only if its narrow integration remains compatible with your Symfony and PHP versions.
52%
Total Score
25
100
72
75
The package has only three releases and none in the last four years, indicating a strong maintenance and abandonment concern despite the short early release interval.
There were zero commits and zero active maintainers in the last three months, consistent with the package's prolonged release hiatus and increasing abandonment risk.
The registry namespace and repository owner match the single individual account emiliort, giving clear ownership but no organization-backed maintenance capacity.
The repository has only two stars, one fork, and one watcher, providing little community evidence to compensate for the inactive maintainer.
Composer is used for build and dependency management, but no security scanning tooling is configured; this is a transparency gap rather than evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/mailer Version ^5.1|^6.0 | — | — |
symfony/http-client Version ^4.4|^5.0|^6.0 | — | — |
psr/event-dispatcher Version ^1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.