The project has one registry maintainer and no security policy or security scanning. Its MIT license, README, and matching repository improve transparency, but the codebase is otherwise lightly supported.
42%
Total Score
25
70
50
Only two releases were published, both in September 2020, with no release in roughly six years. This strongly raises abandonment risk for a package intended for ongoing Symfony and PHPUnit use.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and providing no evidence of current maintenance.
The package has one registry maintainer. A single maintainer is not inherently unhealthy for a small package, but it leaves limited demonstrated maintenance capacity when activity has stopped.
Composer build tooling is present, but no security scanning tools were detected. That weakens ongoing assurance for a dependency with no recent maintenance activity.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a transparency and maintenance gap, though not severe on its own.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.