Healthy and actively maintained, with frequent stable releases and clear organization backing. The main caveats are a broad dependency set and no documented security policy or automated security scanning.
84%
Total Score
83
50
89
90
The package declares 24 runtime dependencies across Roadiz, Symfony, Doctrine, and Solarium. This breadth increases upgrade and compatibility burden, although it is consistent with the package's full-featured integration role.
There were no new or merged pull requests and no issue activity in the last month. This is a modest transparency concern, but it is outweighed by the active release cadence and recent repository push.
The repository has zero stars, forks, and watchers, providing no community adoption evidence. This is a supporting weakness, not a decisive concern given the package's recent and frequent releases.
Composer build tooling is present, but no security scanning tools are configured. The missing automated security coverage is a genuine hygiene gap.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented. This lowers transparency but does not indicate abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ~2.20.0 | — | — |
symfony/flex Version ^2.4.7 | — | — |
roadiz/models Version 2.7.* | — | — |
symfony/cache Version 7.4.* | — | — |
symfony/dotenv Version 7.4.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.