The project has clear documentation, MIT licensing, repository tests, and release notes for 3.6.0. Its small audience, absent security scanning, and limited recent commit activity make long-term maintenance less certain.
67%
Total Score
75
94
75
The repository recorded 0 commits and 0 active maintainers in the last 3 months, despite the recent 3.6.0 release; this weakens evidence of ongoing maintenance.
The repository has 5 stars, 1 fork, and 1 watcher, providing little supporting evidence of broad adoption or a large community to sustain it.
No repository security policy was found. This is a transparency gap, although the package's documented release process and active organization backing provide some context.
Both workflows were analyzed without high- or medium-severity findings, but all 2 action references are unpinned, leaving them exposed to mutable upstream changes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.3 | — | — |
symfony/routing Version ^7.4 || ^8.0 | — | — |
symfony/translation-contracts Version ^2.0 || ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.