The dependency range targets PHP 5.5 and Symfony 2/3, while the repository has no security scanning or security policy. Its MIT license, matching repository, and usable README provide transparency, but do not offset the maintenance risk.
35%
Total Score
0
50
60
50
The latest release was about 6 years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a migration library likely to need ecosystem compatibility updates.
The repository recorded 0 commits and 0 active maintainers over the last 3 months, consistent with the long release gap and indicating no observed ongoing maintenance.
The package requires PHP >=5.5 and supports Symfony 2/3, a legacy dependency range that may limit compatibility with current projects and increases maintenance concerns.
The repository has 1 star and 0 forks, providing little community evidence or backup capacity. Popularity is supporting evidence only, but it offers no meaningful compensation for the inactivity.
Composer is used for builds, but no security scanning tools are present. This is a hygiene gap that adds some transparency and maintenance risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/finder Version ~2.0|~3.0 | — | — |
symfony/console Version ~2.6|~3.0 | — | — |
symfony/event-dispatcher Version ~2.0|~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.