The MIT license, clear README, repository tests, and matching source repository support straightforward adoption. There is no security policy, and both workflow actions are unpinned, leaving maintenance and build-integrity gaps to watch.
62%
Total Score
50
86
50
The package is 113 days old but has only one release, so there is little release history to demonstrate sustained maintenance.
There were zero commits and zero active maintainers in the last three months, which provides weak evidence of ongoing maintenance for a package already more than three months old.
Composer build tooling is present, but no security-scanning tools were detected, leaving a modest transparency and maintenance gap.
The repository has no security policy, so there is no documented path for reporting or handling vulnerabilities.
The workflow audit completed successfully with no dangerous triggers or findings, but both of its two action references are unpinned, reducing build reproducibility and supply-chain hygiene.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
jmf/twig-tabs Version ^1.0 | — | — |
jmf/template-rendering Version ^2.0 | — | — |
symfony/framework-bundle Version ^7.0|^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.