The package has a usable README, a clear MIT declaration, and no install-time scripts. Its one-release history and zero commits in the last three months leave maintenance uncertain, while the workflow uses read-only permissions but leaves both actions unpinned.
62%
Total Score
50
50
79
75
The bundle has six runtime dependencies, including Sulu and Symfony components; this is a substantial integration surface for a small package and can increase compatibility maintenance needs.
This is the only release, published about 11 months ago, so there is limited evidence of an established release process or continued maintenance.
The repository recorded zero commits and zero active maintainers in the last three months, weakening evidence of ongoing maintenance even though it was pushed earlier in the year.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository hygiene gap.
The repository has no security policy. This is a transparency gap, although it is less significant for a small icon asset bundle than for a security-sensitive library.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
sulu/sulu Version ^2.6 | — | — |
symfony/intl Version ^6.2 | ^7.0 | — | — |
symfony/translation Version ^6.2 | ^7.0 | — | — |
doctrine/doctrine-bundle Version ^2.13 | — | — |
phpcr/phpcr-migrations-bundle Version ^1.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.