The package has clear documentation, release notes, and a coherent source tree. Its small audience and lack of a security policy or automated security scanning limit transparency, but recent commits from two contributors and organizational backing reduce abandonment concerns.
84%
Total Score
88
100
89
83
Five issues and two pull requests remain open, with no issues or pull requests closed in the last month. This is a modest maintenance concern, though recent commits and releases provide compensating evidence.
The repository has only two stars and three forks, so independent adoption evidence is limited. Popularity is supporting evidence rather than a health requirement, and active maintenance compensates for the small audience.
Composer build tooling is present, but no security scanning tool was detected. This reduces automated supply-chain transparency without showing that the release is unsafe.
The repository has no security policy, leaving vulnerability-reporting expectations unclear. This is a transparency gap for a maintained package, not evidence of abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/cache Version ^6.4 | — | — |
symfony/config Version ^6.4 | — | — |
symfony/console Version ^6.4 | — | — |
guzzlehttp/guzzle Version ^6.0 || ^7.0 | — | — |
symfony/stopwatch Version ^6.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.