The package has a clear MIT license, tests, a README, and release notes for this version. Its limited dependency surface is manageable, but those positives do not offset the maintenance risk.
12%
Total Score
50
40
50
Packagist marks the entire package as abandoned, with no replacement supplied. Package-wide deprecation is a severe adoption risk even though this is not limited to one release.
Only two releases were published, with the latest released about nine years ago and no releases in the last 12 months. This supports the evidence of long-term inactivity.
The linked repository is archived and was last pushed about eight years ago, indicating the source is no longer being maintained. This strongly increases abandonment risk.
There are no open issues or pull requests, but there has also been no issue or pull-request activity in the last month. With the repository archived, this is consistent with inactivity rather than active stability.
The repository has no security policy. This is a transparency gap, particularly for a package handling email transport integration, although it is secondary to the package-wide abandonment evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/framework-bundle Version ~2.3|~3.0 | — | — |
f500/swiftmailer-sparkpost Version ~1.3.4 | — | — |
symfony/swiftmailer-bundle Version >=2.3.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.