Documentation, release notes, repository tests, and security scanning provide useful support for adoption. Maintenance is still thin, with just one recent commit, one active contributor, and unresolved issues; the missing security policy also limits transparency.
62%
Total Score
50
100
86
75
The package is young at 164 days old and has only two releases, 21 days apart. That is not abandonment, but it provides limited evidence of long-term maintenance.
One contributor made all commits in the last three months, leaving maintenance dependent on a single active person. The repository is user-owned rather than organization-owned, so there is no provided organizational backing to compensate for that concentration.
Only one commit was recorded in the last three months, indicating very limited recent development activity. The recent repository push is a positive sign but does not offset the sparse commit history.
Two issues were opened in the last month and none were closed, with three issues currently open. This suggests unresolved maintenance demand despite some recent user activity.
No repository security policy was found. For an authentication and session library, the absence reduces transparency around vulnerability reporting and maintenance response.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/http-foundation Version ^7.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.