The package includes clear licensing, tests, setup documentation, and a matching source repository. Its maintenance and support outlook are poor, so it is a risky foundation for a new project.
35%
Total Score
25
75
50
The latest release was published in October 2016, and there were no releases in the last 12 months. This long gap is strong evidence of abandonment risk, despite the package having 12 releases overall.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the stale release history. The repository is not archived, but there is no observed recent maintenance.
Install, update, and create-project scripts run during Composer operations. Such scripts are expected for a project-bootstrap package, although they increase the operational impact of depending on an old release.
There were no new or closed issues or pull requests in the last month. With no recent commits or releases to compensate, this provides little evidence of an active support channel.
The repository has zero stars and forks and only one watcher. Popularity is not required for a healthy small project, but these counts provide no supporting evidence of an active user or contributor community.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ~2.2,>=2.2.3 | — | — |
doctrine/dbal Version ~2.5@rc | — | — |
leafo/scssphp Version ~0.6.0 | — | — |
symfony/symfony Version ~2.5.0 | — | — |
twig/extensions Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.