The README is clear, the package is small, licensed under MIT, and has a matching organization-owned repository. Its single maintainer, absent security policy, and long period without project activity make future fixes and support uncertain.
45%
Total Score
75
88
75
The latest release was over 8 years ago, with no releases in the last 12 months; the three-release history indicates a largely inactive package.
The repository recorded no commits and no active maintainers in the last 3 months, reinforcing the extended lack of release activity.
There has been no issue or pull request activity in the last month, with one issue still open; this provides no evidence of ongoing maintenance.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented; the package's small scope limits but does not remove this transparency gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/finder Version ^2.4|^3.0|^4.0 | — | — |
symfony/console Version ^2.4|^3.0|^4.0 | — | — |
symfony/filesystem Version ^2.4|^3.|^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.