The package includes tests, a README, an MIT license file, and a small dependency set. Its maintenance record is concerning: only two releases exist, none in over five years, and recent repository activity is absent.
45%
Total Score
50
100
79
67
The package has only two releases, with the latest published in November 2020 and none in the last 12 months. This is a substantial abandonment concern for a library dependency.
The repository recorded zero commits and zero active maintainers in the last three months, reinforcing the long release gap rather than showing ongoing maintenance.
Composer is used as the build tool, but no security scanning tooling is present. The missing scanning is a modest hygiene gap, not evidence of abandonment on its own.
The repository has no security policy. This limits vulnerability-reporting transparency, though it is secondary to the much stronger maintenance concern.
No GitHub Actions workflows were present, so the audit found no workflow hazards; this also means there is no observed CI or automated release evidence to support ongoing maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^2.7 | — | — |
symfony/http-kernel Version ^5.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.