This is a usable but very new package with a coherent repository, stable major version, clear licensing, tests in the source repository, and no deprecation or dangerous workflow findings. However, the release history is less than one day old, the repository has no measurable three-month commit or issue activity, and the project is backed by a single individual with no popularity signal yet; these substantially limit evidence of sustained maintenance. Missing security policy and incomplete workflow permission declarations add transparency and CI-hardening concerns. Dependency adoption is reasonable only if the developer accepts the risk of relying on a package whose long-term maintenance has not yet been demonstrated.
58%
Total Score
38
100
78
80
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/uid Version ^6.4 || ^7.0 || ^8.0 | — | — |
doctrine/orm Version ^3.0 | — | — |
symfony/config Version ^6.4 || ^7.0 || ^8.0 | — | — |
symfony/http-kernel Version ^6.4 || ^7.0 || ^8.0 | — | — |
symfony/security-http Version ^6.4 || ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.