It includes tests, a changelog, release notes, and an MIT license. Its small user base and absent security policy add little confidence for long-term use.
12%
Total Score
0
69
75
Packagist marks the entire package as abandoned, with no replacement specified. This is a direct warning against taking a new dependency on the release.
The repository had zero commits and zero active maintainers in the last three months, consistent with the archived state. No provided activity signal compensates for this lack of maintenance.
The linked repository is archived, and its last push was in November 2020. Archived source is a severe abandonment risk for a framework integration.
The package has only three releases and none in the last 12 months; its latest release was in January 2020. This indicates a long-standing absence of release maintenance.
The repository has no security policy. This weakens vulnerability-reporting transparency, although the stronger abandonment signals already determine the overall assessment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
rokka/client Version ^1.3 | — | — |
monolog/monolog Version ^1.23 | — | — |
symfony/console Version ^3.4 || ^4.3 || ^5.0 | — | — |
liip/imagine-bundle Version ^2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.