Tests, documentation, and licensing are all in place. The single-maintainer project has little adoption evidence and lacks a security policy, while its CI references are unpinned.
62%
Total Score
50
81
75
The package has only two releases, both launched within about two hours, and no further release in roughly three months. This is limited evidence of sustained maintenance for a young project.
There were no commits and no active maintainers during the last three months, despite the repository being pushed around three months ago. For a newly released package, this is a meaningful maintenance concern.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but this provides no independent adoption or community signal.
Composer build tooling is present, but no security-scanning tool was detected. This is a modest transparency and maintenance gap.
The repository has no security policy. That weakens disclosure transparency, although it is not by itself evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3 | — | — |
symfony/form Version ^8.1 | — | — |
symfony/config Version ^8.1 | — | — |
pagerfanta/core Version ^4 | — | — |
symfony/routing Version ^8.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.