Its 44 runtime dependencies and absent security policy increase maintenance and review costs. The package is licensed and documented; pin 0.5.7 and verify compatibility before adopting it.
58%
Total Score
50
50
83
75
The package declares 44 runtime dependencies, including framework, database, imaging, and security components; this broad dependency surface raises upgrade and compatibility costs.
The repository is owned by an individual account rather than an organization, so the project has no observed organizational backing to compensate for its thin activity evidence.
The repository recorded zero commits and zero active maintainers during the last three months, which weakens evidence of current maintenance despite the recent release history.
The repository has zero stars and forks and one watcher. This is weak supporting evidence, but popularity alone does not determine the health of a small package.
Composer build tooling is present, but no security-scanning tools were detected, leaving a notable repository hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
ramsey/uuid Version ^4.8 | — | — |
doctrine/orm Version ^2.12 | — | — |
symfony/mime Version 7.0.* | — | — |
symfony/yaml Version 7.0.* | — | — |
symfony/asset Version 7.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.