Frequent releases, a current repository, tests, and a security policy support adoption. MIT licensing and no install-time scripts reduce integration friction.
73%
Total Score
83
83
100
All four recent commits came from one contributor. Symfony organization backing provides some continuity, but the observed recent contributor base remains concentrated.
Composer build tooling is present, but no security-scanning tooling was detected. This is a modest transparency and maintenance-hygiene gap rather than evidence of unsafe behavior.
The release is not a stable major version, so its 0.x status leaves more room for breaking changes despite the absence of prereleases.
The sole workflow was fully analyzed with no audit findings and no untrusted checkout or script-injection sinks. Its one action reference is unpinned, which weakens build reproducibility.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/ai-agent Version ^0.13 | — | — |
symfony/http-client Version ^7.3|^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.