This release appears healthy and reasonable to depend on: it has a stable v1.5.0 release, 13 releases over 155 days with a median interval of about 7 days, an active non-archived repository, tests, changelog, security policy, build tooling, and Dependabot scanning. The main concerns are concentrated commit activity and GitHub Actions permission hygiene, including one workflow with top-level write permissions and several without explicit top-level permissions; these warrant review but do not outweigh the clear evidence of active maintenance and organization backing.
82%
Total Score
100
100
94
80
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/form Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/config Version ^6.0 || ^7.0 || ^8.0 | — | — |
twig/extra-bundle Version ^3.12 | — | — |
twig/string-extra Version ^3.12 | — | — |
symfony/http-kernel Version ^6.0 || ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.