The MIT license, included tests, and no install-time scripts support straightforward adoption. The small README and absent security policy limit transparency.
38%
Total Score
50
71
83
The package has had no release in more than 9 years; its latest release was June 2017 despite being published since December 2015. This is strong evidence of abandonment.
There were no commits and no active maintainers in the last 3 months, consistent with the package having received no updates for years. This materially raises abandonment risk.
The repository name does not match the package name and its README does not mention the package, raising uncertainty about whether the linked repository is the package's intended home.
Composer is used for the build, which fits the package ecosystem. No security scanning tools are configured, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no stated process for reporting or handling vulnerabilities. This adds a transparency concern for a package that integrates with application infrastructure.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony-cmf/seo-bundle Version 1.0.*@dev | — | — |
egeloen/ckeditor-bundle Version ~2.0 | — | — |
knplabs/knp-paginator-bundle Version ~2.4 | — | — |
stof/doctrine-extensions-bundle Version ~1.1@dev | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.