Its long release history and stable major version support maturity, with a clear MIT license and release notes. The repository matches the package and includes tests, but it lacks a security policy and security-scanning tooling.
71%
Total Score
50
94
50
One contributor made all 3 recent commits, giving the project a top-contributor share of 100% and leaving little recent maintenance redundancy.
The repository had 3 commits in the last 3 months, showing recent activity, although all of it came from one active maintainer.
Composer build tooling is present, but no security-scanning tools were detected, reducing automated coverage for a package with 10 runtime dependencies.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version 2.* | — | — |
aws/aws-sdk-php Version ^3.64 | — | — |
doctrine/common Version ^2.10 | — | — |
vlucas/phpdotenv Version ^5.3 | — | — |
intervention/image Version ^2.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.