52%
Total Score
75
93
50
The package runs post-install and post-update Composer scripts. These are common in Symfony applications but add installation behavior that dependents must understand.
The package is about 2 years and 4 months old, has only 3 releases, and had no releases in the last 12 months. This is a substantial maintenance concern.
The repository recorded no commits and no active maintainers in the last 3 months, providing no evidence of current development activity.
The repository has no security policy, reducing transparency for reporting and handling security issues.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.12|^3.0 | — | — |
doctrine/orm Version ^3.1 | — | — |
symfony/flex Version ^2 | — | — |
symfony/form Version 7.0.* | — | — |
symfony/intl Version 7.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.