The stable v2.0 API, clear MIT licensing, and small dependency footprint support straightforward adoption. Only four releases exist, with no release in over a year and no commits in the last three months; the project also lacks a security policy.
58%
Total Score
50
100
81
75
The package has only four releases across about five years, with no release in the last 12 months. This indicates slow maintenance and lowers confidence in timely fixes.
The repository recorded zero commits and zero active maintainers in the last three months. Combined with the sparse release history, this is evidence of stalled maintenance.
The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these counters provide little evidence of a broad maintenance community.
Composer build tooling is present, but no security scanning tools were detected. The missing scanning is a hygiene gap rather than evidence that the package is unsafe.
No security policy is present in the repository, leaving vulnerability-reporting expectations unclear. This is a transparency gap, not a severe risk by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/property-access Version >=6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.