The small dependency surface, MIT license, and README reduce integration friction. The repository is not archived, but its lack of security policy and scanning leaves little evidence of ongoing project care.
18%
Total Score
0
100
50
75
Packagist marks the entire package as abandoned and names EkinoNewRelicBundle as its replacement. This is a direct warning against starting a new dependency on this release.
The latest release was published in December 2013, with no releases in the last 12 months. That long release gap is strong evidence of abandonment for a package intended to integrate with a changing framework and monitoring service.
The repository has recorded zero commits and zero active maintainers in the last three months, and was last pushed in February 2014. The repository being unarchived does not compensate for more than 12 years without observed maintenance.
The linked repository has no security policy and no security scanning tools. For an unmaintained package this further limits evidence that vulnerabilities would be handled, though it is secondary to the abandonment and deprecation findings.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/symfony Version >=2.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.