It has a long release history, a recent release, three active contributors, repository tests, and clear organizational backing. The small dependency set and documented release notes further reduce adoption risk.
78%
Total Score
100
100
94
75
Composer build tooling is present, but no repository security-scanning tool was detected, leaving a modest assurance gap.
The repository has no security policy, which makes vulnerability-reporting expectations less transparent for a dependency consumed by other projects.
The only workflow was fully analyzed and has no untrusted checkouts or script injection, but all five action references are unpinned and two high-confidence unpinned-image findings weaken build reproducibility; the low-confidence cache finding is only a hygiene concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/event-dispatcher-contracts Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.