The package has a small codebase and no security policy or scanning. Its MIT declaration and repository README provide basic transparency, but there is no current maintenance evidence.
38%
Total Score
50
58
50
The package has only one release, published about 13 years ago, with no releases in the last 12 months. This is strong evidence that maintenance has stopped.
The repository is not marked archived, which is mildly reassuring, but its last push was about 13 years ago. The inactivity outweighs the non-archived status.
There are no new or closed issues or pull requests in the last month, and one issue remains open. For a project already unchanged for years, this supports an abandonment concern.
Composer is used for builds, but no security-scanning tools are reported. That leaves dependency and release checks less transparent.
The repository has no security policy. This is a transparency and maintenance gap, although the package is small and the absence is less decisive than its prolonged inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version >=2.3 | — | — |
doctrine/dbal Version >=2.3 | — | — |
symfony/symfony Version ~2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.