This release appears usable and reasonably well-backed, with an MIT license, a matching organization-owned repository, a non-archived source, recent activity from two contributors, changelog and README documentation, security scanning, and no deprecated status or install-time lifecycle scripts. The main limitation is maturity: the package is only 4 days old with two releases, has no tests in either the artifact or repository, and its workflow omits top-level token permissions; the absent security policy is also a transparency gap. These concerns warrant caution for production adoption, but the active repository, balanced contributor activity, and project tooling materially reduce abandonment and maintenance risk.
72%
Total Score
100
50
89
80
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/form Version ^7.4 | — | — |
symfony/config Version ^7.4 | — | — |
webmozart/assert Version ^2.4 | — | — |
symfony/http-kernel Version ^7.4 | — | — |
symfony/twig-bundle Version ^7.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.