It includes tests, documentation, release notes, and a clear MIT license. The organization-backed repository is not archived, but its open issues and absent security policy limit confidence.
58%
Total Score
67
79
50
The latest release was over 8 years ago, with no releases in the last 12 months and only three releases overall. This is substantial evidence of abandonment risk despite the package having a documented release history.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the long release gap. This materially lowers confidence in ongoing maintenance.
Eight issues and one pull request remain open, while there was no issue or pull request activity in the last month. The unresolved queue adds to the maintenance concern.
The project uses Composer, but no security-scanning tooling was detected. This is a modest supply-chain hygiene gap rather than evidence that the release is unsafe.
The linked repository has no published security policy. This is a transparency and reporting gap, though it is less significant than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/templating Version ^2.8 || ^3.0 | — | — |
symfony/framework-bundle Version ^2.8 || ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.