The MIT license, readable package, and repository tests support basic transparency. Very low adoption and no security policy make long-term support harder to trust.
42%
Total Score
100
75
83
The latest release was in December 2017, with no releases in the last 12 months despite 21 historical releases. This long period without a release is strong evidence of abandonment risk.
The repository has 1 star, 0 forks, and 0 watchers. Popularity is not decisive by itself, but these very low adoption signals provide little evidence of a broader support community.
The repository is not marked archived, which preserves a path for maintenance, but its last push was also in December 2017 and does not offset the prolonged inactivity.
The repository has no security policy. This is a transparency and vulnerability-reporting gap, especially for a package that has not been updated for years.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/yaml Version ~3.0 | — | — |
mindy/template-bundle Version ~3.0 || ~4.0 | — | — |
egeloen/ckeditor-bundle Version ~5.0 || ~6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.