The repository includes tests, a matching README, and an active release cadence. Maintenance is concentrated in one contributor, and the project lacks a security policy or scanning, so pin this version and watch ownership closely.
68%
Total Score
67
100
88
75
All three recent commits came from one contributor. Organization backing provides some handoff capacity, but no second active contributor is shown to share current maintenance.
The repository recorded three commits in the last three months, showing some ongoing work but a relatively light maintenance pace.
Composer is used as the build tool, but no security-scanning tool was detected, leaving automated security coverage un demonstrated.
The repository has no security policy, so the process for reporting and handling vulnerabilities is not documented.
Version 0.44.1 is not a prerelease, but it remains before a stable major release, so compatibility expectations are weaker than for a 1.x release.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
flow-php/types Version self.version | — | — |
symfony/config Version ^6.4 || ^7.4 || ^8.0 | — | — |
flow-php/filesystem Version self.version | — | — |
symfony/http-kernel Version ^6.4 || ^7.4 || ^8.0 | — | — |
symfony/dependency-injection Version ^6.4 || ^7.4 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.