The package is clearly identified, licensed, documented, and free of install-time scripts. Its small user base and lack of a security policy add modest transparency concerns.
38%
Total Score
33
100
72
83
The latest release was published nearly 10 years ago, with no releases in the last 12 months; the seven-release history shows early activity but no current maintenance.
There were no commits and no active maintainers in the last three months, consistent with a project that has effectively stopped receiving maintenance.
Only one account has registry publish access. That is a narrow publishing base for a user-owned project and increases continuity risk, especially alongside the inactive repository.
The package and repository are owned by the same individual account, confirming ownership alignment but providing no organizational backing to reduce the single-maintainer risk.
The repository has one star and no forks, indicating very limited visible adoption. Popularity is supporting evidence rather than decisive proof, but it provides little evidence of a broad maintenance community.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/css-selector Version ^2.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.