Its 29 runtime dependencies create a large compatibility and upkeep burden. The 0.1.x line also provides limited maturity evidence for a package this old.
12%
Total Score
50
17
Packagist marks the entire package as abandoned, with no replacement named. This is a severe warning against taking a new dependency on it.
The latest release was in May 2015, with no releases in the last 12 months despite the package being over 11 years old. This strongly indicates abandonment.
The package declares 29 runtime dependencies spanning frameworks, payment services, charting, email, and frontend assets. That broad dependency surface increases compatibility and maintenance risk, especially without recent releases.
Version 0.1.7 is not a stable major release, so its API maturity and compatibility guarantees are limited. The long period without releases provides no compensating evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ovh/ovh Version 1.* | — | — |
twig/twig Version 1.* | — | — |
silex/silex Version 1.* | — | — |
symfony/form Version 2.* | — | — |
symfony/yaml Version 2.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.