Healthy and suitable to use, with a small maintainer-base caveat. It has recent releases, active organization-backed development, tests, release notes, and strong repository hygiene, but all recent commits come from one contributor and the project is still young.
78%
Total Score
83
100
83
100
The package is only 94 days old and has two releases, with the latest released about 90 days after the first; this shows recent activity but limited long-term history.
All 10 recent commits came from one contributor, creating a real continuity risk; the organization-backed repository partly compensates because maintenance can potentially be handed off.
The repository has no stars, forks, or watchers, so there is little external adoption evidence; this is supporting context only and does not outweigh the active organization-backed development.
Composer build tooling is present, but no security scanning tool was detected; the repository's security policy and CI checks provide some compensating hygiene.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.22 | — | — |
symfony/config Version ^8.0 | — | — |
sympress/kernel Version dev-main | — | — |
symfony/http-kernel Version ^8.1 | — | — |
symfony/twig-bridge Version ^8.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.