The package is small but clearly documented, tested, and MIT-licensed. Its single-maintainer project has no security policy or automated security scanning, so future support and response capacity are limited.
58%
Total Score
67
100
83
88
Only one registry maintainer is listed. That is normal for an individual-owned project, but combined with inactive repository activity it leaves limited visible support capacity.
The package has 10 releases, but none in the last 12 months and the latest release was nearly two years ago. This indicates materially slowed maintenance despite a previously established release history.
There were no commits and no active maintainers during the last three months. Together with the long gap since the latest release, this is evidence of reduced ongoing maintenance.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no community signal to offset the maintenance concerns.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/twig-bundle Version ^7.1 | — | — |
symfony/framework-bundle Version ^7.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.