The MIT license, README, and matching repository provide useful transparency for inspection. Its seven runtime dependencies and lack of install scripts add maintenance and installation considerations, but do not offset the staleness.
42%
Total Score
0
69
75
This package has only one release, published nearly five years ago, with no releases in the last 12 months. That strongly raises abandonment and compatibility risk for a dependency.
There were zero commits and zero active maintainers in the last three months, consistent with a project that is no longer actively maintained.
The repository has one star and no forks, providing very little independent adoption evidence. Popularity is only supporting evidence, so this modestly increases uncertainty rather than determining the verdict.
Composer is used as the build tool, but no security-scanning tool is present. The missing scanning coverage is a maintenance and hygiene concern.
The repository has no security policy, reducing transparency about vulnerability reporting and response. This is a hygiene gap, not evidence of a security incident.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^2.8 | — | — |
symfony/form Version ^5 | — | — |
symfony/config Version ^5 | — | — |
symfony/routing Version ^5 | — | — |
symfony/serializer Version ^5.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.