The package has a clear MIT license, README, tests, and a small dependency set. Its lack of a security policy adds transparency risk, while the aging project gives little evidence of current maintenance.
40%
Total Score
100
70
50
The latest release was published roughly six years ago, with no releases in the past 12 months; the four-release history shows limited ongoing maintenance.
The repository is not archived, but it was last pushed roughly six years ago, which does not compensate for the absence of recent releases.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
enm/json-api-common Version ^3.0 | — | — |
symfony/http-kernel Version ^2.7|^3.0|^4.0 | — | — |
symfony/dependency-injection Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.