The MIT license, clear README, and repository tooling provide useful transparency. No releases in about 14 months and no commits in the last 3 months leave maintenance uncertain; use survos/code-bundle instead.
18%
Total Score
50
71
75
Packagist marks the package abandoned and recommends survos/code-bundle as a replacement. This is a direct warning against taking a new dependency on this release.
The package has 736 releases since June 2022, but none in the last 12 months; its latest release was about 14 months ago. The earlier release volume does not compensate for the current pause.
The repository recorded no commits and no active maintainers in the last 3 months. That supports the abandonment concern rather than showing ongoing maintenance.
The repository has no security policy. This is a transparency gap, though it is secondary to the package being marked abandoned.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.21.1 | — | — |
symfony/config Version ^6.4 || ^7.3 | — | — |
symfony/string Version ^6.4 || ^7.3 | — | — |
symfony/console Version ^6.4 || ^7.3.1 | — | — |
nette/php-generator Version ^4.1.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.