Usable with caveats: the package is licensed, stable, clearly backed by its matching organization repository, and not deprecated. However, it has had no releases or commits for about 2 years and 6 months, with no tests or security policy, so verify compatibility before adopting it.
58%
Total Score
50
50
75
50
There were no commits and no active maintainers in the last 3 months, consistent with the long gap since the latest release and raising abandonment concerns.
The package has eight runtime dependencies, including framework and API components; this is a meaningful compatibility surface but not inherently excessive for a Contao integration.
A README is present and the repository uses GitHub Releases, but there are no tests or changelog; for this small integration, the missing tests are a maintenance transparency gap.
The package has five releases but none in the last 12 months; its latest release was about 2 years and 6 months ago, indicating that maintenance may have stopped.
Composer build tooling is present, but no security scanning tools are configured. This is a hygiene gap, though the absence of workflows limits the related automation risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/dbal Version ^3.0 | — | — |
symfony/config Version ^5.4 || ^6.4 | — | — |
contao/core-bundle Version ^4.13 || ^5.0 | — | — |
symfony/http-kernel Version ^5.4 || ^6.4 | — | — |
inspiredminds/eyepin-api Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.