It includes tests, a README, a matching repository, and a clear MIT license. Maintenance has effectively stopped since March 2018, with no recent commits or releases and no security policy, making this a risky long-term dependency.
42%
Total Score
63
100
78
83
The package has had only two releases, and the latest was over 10 years ago with no releases in the last 12 months. That indicates a largely abandoned release stream.
There have been zero commits and zero active maintainers in the last three months, consistent with maintenance having stopped for years.
There is one open issue and one open pull request, but neither has seen activity in the last month. This provides no evidence of active project care.
Composer build tooling is present, but no security scanning tooling was detected. For a small package this is a hygiene gap, especially alongside the stale repository.
The repository is not archived, but it was last pushed in March 2018. The lack of archiving is reassuring, while the old last-push date still supports the maintenance concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/process Version ~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.