The package has a useful README, tests, a changelog, MIT licensing, and no install-time scripts. No security policy or scanning is present; pin v1.0.0 while its maintenance record develops.
66%
Total Score
50
86
75
This is the first release, published less than a day ago, so there is no release history or cadence demonstrating sustained maintenance. Its newness limits the evidence rather than proving abandonment.
No commits or active maintainers were observed in the previous three months. Because the repository and package are brand new, this is mainly a missing maintenance track record rather than evidence of a long-abandoned project.
Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap, not a severe risk by itself.
The repository has no security policy, leaving vulnerability-reporting expectations unclear for consumers of this integration package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.8 | — | — |
doctrine/dbal Version ^3.6 || ^4.0 | — | — |
symfony/asset Version ^6.4 || ^7.0 | — | — |
symfony/config Version ^6.4 || ^7.0 | — | — |
symfony/routing Version ^6.4 || ^7.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.