The package includes a clear README, tests, changelog, matching source repository, and an MIT license. Its same-day release history and lack of recorded recent commit activity leave maintenance longevity unproven, while no security policy is published.
68%
Total Score
75
100
88
83
The package is only 0 days old, with three releases published within about 9 hours, so there is not enough history to demonstrate sustained maintenance.
No commits and no active maintainers were recorded in the last 3 months, but the repository and package are newly created, so this is evidence of unproven continuity rather than established abandonment.
The repository uses Make and Composer, but no security scanning tool was detected; this is a modest transparency and maintenance gap.
The repository has no published security policy, leaving vulnerability reporting and response expectations unspecified.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.1 || ^2.0 || ^3.0 | — | — |
symfony/yaml Version ^7.0 || ^8.0 | — | — |
symfony/config Version ^7.0 || ^8.0 | — | — |
symfony/http-kernel Version ^7.0 || ^8.0 | — | — |
symfony/http-foundation Version ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.