The MIT license, matching source repository, and repository test suite support adoption. Sparse activity and the lack of a security policy leave maintenance and response capacity less certain.
65%
Total Score
75
79
83
The package has seven releases over about three years and five months, with one release in the last 12 months; this is sparse but the latest release is recent.
The repository had zero commits and zero active maintainers in the last three months, weakening evidence of ongoing maintenance despite the recent release push.
The repository has zero stars and forks and only three watchers. Popularity is supporting evidence rather than a verdict, but these figures provide little external adoption signal.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
Version 0.2.2 is not on a stable major version, so compatibility expectations are lower even though it is not marked as a prerelease.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version >=1.35 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.