The project has a small but coherent source repository with tests, clear documentation, and a recent release. Maintenance activity has been quiet for three months, and no security scanning or policy is present, which limits transparency but does not outweigh the release and repository evidence.
78%
Total Score
75
100
94
75
The repository recorded no commits and no active maintainers during the last three months. The recent release offsets this somewhat, but the current quiet period is a maintenance caution.
Composer build tooling is present, but no security scanning tool was detected. This is a transparency and hygiene gap rather than evidence of unsafe behavior.
The repository has no security policy. That weakens disclosure transparency for a library integrated into application APIs, although other repository evidence shows it is an established project.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/config Version ^7.4|^8.0 | — | — |
symfony/routing Version ^7.4|^8.0 | — | — |
symfony/http-kernel Version ^7.4|^8.0 | — | — |
api-platform/openapi Version ^4.3 | — | — |
api-platform/metadata Version ^4.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.