It includes a readable README, tests, and an MIT license. The small community, missing security policy, and package-name mismatch in the repository reduce confidence in long-term support.
42%
Total Score
50
79
75
The package has had only two releases, with none in the last 12 months, and its latest release was about 9 years ago. This is strong evidence of abandonment risk, despite the package not being deprecated.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the release history showing that maintenance stopped about 9 years ago.
There were no new or closed issues or pull requests in the last month. While zero open issues is not harmful by itself, the lack of recent activity provides no evidence of ongoing maintenance.
The repository name does not match the package name and its README does not mention the package. Although the file tree appears package-specific, this mismatch leaves some uncertainty about repository ownership and provenance.
The repository has only 3 stars, 3 forks, and 3 watchers. Popularity is supporting evidence rather than a verdict, but these small numbers provide little evidence of a broad support community.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/symfony Version ~2.1 | — | — |
symfony/security-bundle Version ~2.1 | — | — |
symfony/framework-bundle Version ~2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.