The MIT license, README, and recent publication history provide useful transparency. There is no repository security policy, and the source tree does not clearly name the package.
61%
Total Score
75
93
75
The repository recorded no commits and no active maintainers in the last 3 months, which weakens evidence of current maintenance despite the recent registry releases.
The repository name does not match the package name and its README does not mention the package, creating uncertainty that this is the package's intended source repository.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/config Version ^7.3||^8.0 | — | — |
symfony/console Version ^7.3||^8.0 | — | — |
google/apiclient Version ^2.0 | — | — |
symfony/http-kernel Version ^7.3||^8.0 | — | — |
symfony/dependency-injection Version ^7.3||^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.