Flow PHP - Symfony Telemetry Bundle
74%
Total Score
caution
Frequent releases and an active repository are offset by all recent commits coming from one contributor.
All 11 recent commits came from one contributor, giving the project a thin practical maintainer base. Organization backing helps with handoff potential, but no second active contributor is shown.
Composer is used for builds, but no security scanning tools were detected. The missing scanning is a modest transparency gap, not evidence of unsafe code by itself.
The repository has no security policy. This weakens vulnerability-reporting transparency, although it does not by itself indicate abandonment or an unsafe release.
Version 0.46.0 is not a stable-major release, but it is not a prerelease and recent releases show no prerelease activity. This indicates active iteration with some API-maturity risk.
No GitHub Actions workflows were present, so there were no workflow risks to flag; this also means no workflow-based build or security automation was evidenced.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/clock Version ^1.0 | — | — |
symfony/config Version ^6.4 || ^7.4 || ^8.0 | — | — |
symfony/console Version ^6.4 || ^7.4 || ^8.0 | — | — |
flow-php/telemetry Version self.version | — | — |
symfony/http-kernel Version ^6.4 || ^7.4 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.