The package is small and clearly identified, with an MIT license, a matching repository, and no install-time scripts. Its maintenance has effectively stopped, and the repository has no tests or security policy, so pinning this release carries substantial abandonment risk.
42%
Total Score
0
72
75
The package has had no release in about nine years and none in the last 12 months, which is strong evidence of abandonment despite its five-release history.
The repository recorded zero commits and zero active maintainers in the last three months, confirming that current maintenance is absent.
The artifact includes a README, while missing tests and a changelog are normal packaging gaps; however, the repository also reports no tests or changelog, reducing transparency for future changes.
The repository has only 1 star, 0 forks, and 1 watcher, providing little evidence of a broad user or contributor base to offset the lack of maintenance.
Composer build tooling is present, but no security scanning tools are configured, which is a modest hygiene gap for a dependency package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ~1.28|~2.0 | — | — |
silex/silex Version ^2.0 | — | — |
twig/extensions Version ~1.4 | — | — |
symfony/translation Version ~2.8|~3.0 | — | — |
symfony/twig-bridge Version ~2.8|~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.