The package includes tests, a substantial README, release notes, and a matching MIT license. Its clean workflow audit and modest dependency set provide some reassurance, but the project shows little evidence of ongoing development.
58%
Total Score
0
100
79
50
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the older last push, this is concrete evidence of stalled development.
The package had seven releases clustered in December 2024, but none in the following nearly two years. That long publishing gap weakens confidence in ongoing maintenance.
The project uses Composer, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than evidence that the package is unsafe.
The repository has no published security policy, leaving vulnerability reporting and response expectations unclear. This matters for a library that handles email templates and application data.
Version v0.2.0 is not a stable major release, so compatibility guarantees and project maturity are limited. It is not marked as a prerelease, which provides some compensation.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
twig/twig Version ^3.0 | — | — |
monolog/monolog Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.