The package has a clear README, MIT licensing, tests in the repository, and no install-time scripts. Its package-wide deprecation, archived repository, and no releases or commits for years make ongoing support too uncertain for a new dependency.
12%
Total Score
0
100
50
83
Packagist marks the entire package as abandoned, with no replacement specified. Package-wide deprecation is a severe adoption risk rather than a release-specific warning.
The package has had 16 releases since November 2021, but the latest release was April 11, 2022 and there were no releases in the last 12 months. This indicates prolonged release inactivity.
There were zero commits and zero active maintainers in the last three months. Together with the archived repository, this strongly indicates no current maintenance capacity.
The linked repository is archived, despite a recorded push on January 31, 2025. An archived source project is not a reliable basis for ongoing maintenance or fixes.
The repository uses Composer for its build tooling, but reports no security scanning tools. This is a minor transparency gap, outweighed by the stronger deprecation and abandonment evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
liip/monitor-bundle Version ^2.16 | — | — |
enlightn/security-checker Version ^1.9 | — | — |
sonata-project/admin-bundle Version ^3.0 || ^4.0 | — | — |
symfony/requirements-checker Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.