Clear licensing, release notes, and a maintained repository improve confidence. Recent work is concentrated in one contributor, so maintenance continuity deserves attention.
78%
Total Score
67
100
89
100
One contributor made all recent commits, giving the project a narrow recent contributor base. Organization backing partly compensates because maintenance can be handed off within the organization.
Only one commit was recorded in the last 3 months, indicating limited recent source activity despite the regular release history.
The repository has five stars and no forks, showing limited community adoption. Popularity is supporting evidence only, and the organization backing and release activity matter more here.
Composer build tooling is present, but no security-scanning tool was detected. The missing scanner is a modest transparency and hygiene gap, not evidence of an unsafe release.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/notifier Version ^7.4|^8.0 | — | — |
symfony/serializer Version ^7.4|^8.0 | — | — |
symfony/http-client Version ^7.4|^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.