The MIT license, frequent releases, and recent repository activity support continued maintenance. The small active team and missing security policy reduce confidence for a framework dependency.
70%
Total Score
83
100
92
83
Two contributors are active, but one accounts for 17 of 18 recent commits (94%), leaving maintenance highly concentrated even with organization backing.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for a framework dependency.
The assessed version is a prerelease alpha, so compatibility and production readiness are less certain despite prereleases representing only 5% of recent releases.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3 | — | — |
symfony/yaml Version ^7 | — | — |
monolog/monolog Version ^3 | — | — |
illuminate/database Version ^12 | — | — |
illuminate/pagination Version ^12 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.