An migration EventSubscriber which ensures public namespace is only added if needed
60%
Total Score
caution
Usable with caveats: no releases or commits since February 2025 weaken confidence in ongoing maintenance.
The repository is owned by an individual rather than an organization, so the single registry maintainer represents a genuinely thin ownership base. The matching repository and tests provide some compensation, but not ongoing maintenance capacity.
The package has had no release in about 19 months, despite only three releases since January 2025. This is a meaningful maintenance concern for a dependency that may need compatibility fixes.
There were zero commits and zero active maintainers in the last three months, consistent with the broader lack of releases since February 2025. This weakens confidence that defects or ecosystem changes will receive fixes.
The project uses Composer, but no security-scanning tooling was detected. This is a modest transparency and maintenance gap rather than a severe risk for this small package.
The repository has no security policy. For a small library this is a limited transparency gap, but it leaves vulnerability-reporting expectations unclear.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^2.12 || ^3.0 | — | — |
doctrine/dbal Version ^2.13 || ^3.3 | — | — |
doctrine/event-manager Version ^1.1 || ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.