The release includes tests, release notes, clear Apache-2.0 licensing, and no install-time scripts. The linked repository has no recent commits or issue activity, and its README does not identify this package, weakening confidence in ongoing support.
58%
Total Score
50
100
81
83
The package has a long history and 14 releases, but its latest registry release was over five years ago with no releases in the last 12 months, indicating likely stagnation.
The repository recorded zero commits and zero active maintainers in the last three months, which is strong evidence of limited current maintenance.
There were no new or closed issues or pull requests in the last month, while 84 issues and 22 pull requests remain open; this suggests unresolved maintenance demand.
The repository name does not match the package name and its README does not mention the package, so the link does not clearly establish that this repository supports the published package.
Composer is used for builds, but no security scanning tools are reported; the missing scanning is a modest hygiene gap rather than evidence of abandonment on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/framework-bundle Version >=4.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.