A Symfony bundle that allows you to purge single templates in the Twig cache
68%
Total Score
caution
Usable with caveats: sparse release history and no recent commits weaken maintenance confidence.
Only two releases exist across roughly four years, with one release in the last 12 months; the recent release is positive, but the overall cadence is sparse.
There were no commits and no active maintainers in the last three months, which weakens evidence of ongoing maintenance after the release.
Composer build tooling is present, but no repository security-scanning tool was detected; this is a modest transparency gap rather than a severe risk.
The repository has no security policy, leaving vulnerability-reporting expectations unspecified.
All 17 analyzed action references are unpinned, and the audit found a high-confidence template-injection pattern. However, no pull_request_target or workflow_run trigger, untrusted checkout, or script-injection sink was observed, so these are workflow-hygiene concerns rather than a severe adoption blocker.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.0 || ^3.0 | — | — |
symfony/config Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/filesystem Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/http-kernel Version ^6.0 || ^7.0 || ^8.0 | — | — |
symfony/twig-bundle Version ^6.0 || ^7.0 || ^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.