Regular releases, release notes, and organizational ownership provide useful continuity. The repository has no security policy, leaving its security practices less transparent.
68%
Total Score
67
100
50
All recent commits came from one contributor, giving a top-contributor share of 100%. The organization provides some handoff capacity, but no second active contributor is shown in this period.
Only 1 commit was recorded in the last 3 months, from 1 active maintainer. This is a thin recent activity signal, although organizational backing reduces abandonment risk.
No repository security policy was found. This reduces transparency around vulnerability reporting and response, with no provided compensating security-policy evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tbachert/spi Version ^1.0.5 | — | — |
symfony/config Version ^5.4 || ^6.4 || ^7.0 || ^8.0 | — | — |
open-telemetry/api Version ^1.8 | — | — |
open-telemetry/sdk Version ^1.14 | — | — |
open-telemetry/context Version ^1.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.