Risky to adopt: this package has had only one release, with no release activity since January 2013, and its repository has not been updated since then. It is not deprecated or archived, but the minimal documentation and lack of repository security policy add transparency concerns.
32%
Total Score
100
58
83
The package has only one release, and its latest release was about 13 years ago with no releases in the last 12 months, which is strong evidence of abandonment risk.
A README is present but only 78 characters long, while tests and a changelog are absent; the missing tests and changelog are normal for a published artifact, but the extremely limited consumer documentation is a transparency gap.
The repository name does not match the package name and its README does not mention the package, leaving uncertainty about whether the linked repository directly backs this release.
The repository is not marked archived, which avoids the strongest abandonment signal, but its last push was about 13 years ago and does not offset the stale release history.
The repository has no security policy. This is a modest transparency gap, though the package is small and has no recent activity suggesting an active security process.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/symfony Version >=2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.