The project has had no registry releases for about two years and seven months, with no commits in the last three months. Tests, a README, release notes, and read-only workflow permissions help, but four workflow actions are unpinned and no security scanning or policy is present.
58%
Total Score
50
83
75
The package has made no releases in the last 12 months, and its latest release was about two years and seven months ago; the 10-release history shows prior activity but not current maintenance.
There were zero commits and zero active maintainers in the last three months, indicating currently inactive development even though the repository is not archived.
The repository has 5 stars, 0 forks, and 1 watcher, providing little evidence of broad community adoption; this is supporting context rather than a health verdict.
Composer build tooling is present, but no security scanning tools were detected, leaving a meaningful maintenance and transparency gap for a framework application.
The repository has no security policy, which makes vulnerability reporting and disclosure expectations less clear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
slim/slim Version ^4.10 | — | — |
slim/flash Version ^0.4.0 | — | — |
symfony/yaml Version ^5.4 | — | — |
php-di/php-di Version ^6.4 | — | — |
slim/twig-view Version ^3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.