The MIT license, focused dependency set, readable documentation, and tested source make adoption straightforward. A missing security policy, one-person maintenance base, and limited recent commit activity leave some continuity risk.
78%
Total Score
50
100
100
50
Only one registry maintainer is listed. This is manageable for a user-owned project but leaves little publishing redundancy.
One contributor made all recent commits, creating a narrow maintenance base with no demonstrated handoff capacity.
Only one commit was recorded in the last three months, so recent maintenance activity is limited despite the latest repository push.
The repository has no security policy, which makes vulnerability reporting and response expectations less transparent.
Both workflows use read-only permissions and contain no detected dangerous findings, but four of five action references are unpinned, leaving avoidable build reproducibility and action-change risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sulu/sulu Version ^3.0 | — | — |
doctrine/doctrine-bundle Version ^2.13 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.