Tests, a README, and a clear MIT license make adoption easier. The workflow leaves all four actions unpinned and the repository has no security policy, so pin this version while the project matures.
62%
Total Score
67
88
67
The package is only 45 days old and has two releases, both published on the same day, so its longer-term maintenance pattern is not yet established.
All five recent commits came from one contributor, leaving maintenance dependent on a single active developer; organization backing does not compensate without another active contributor.
Five commits in the last three months show recent activity, but this is limited evidence because the project itself is only 45 days old.
The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities in a mailer component.
The sole workflow was fully analyzed and has no dangerous triggers, untrusted checkouts, or audit findings, but all four action references are unpinned, weakening build reproducibility.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
yiisoft/yii2 Version ~2.0 | — | — |
yiisoft/yii2-symfonymailer Version ^3.0 || ^4.0 | — | — |
pralhadstha/php-mailer-gateways Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.