The release is clearly licensed and includes a short manual for consumers. There is no repository security policy or security-scanning tool, so security transparency is limited.
70%
Total Score
75
94
75
All 16 recent commits came from one contributor, leaving maintenance dependent on a single person despite the recent activity.
Composer is used as a build tool, but no security-scanning tools are reported, limiting automated security oversight.
The repository has no security policy, so it provides no documented channel or process for reporting and handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^v3 | — | — |
tigress/menu Version >=2026 | — | — |
dompdf/dompdf Version >=v3 | — | — |
tigress/model Version >=2026 | — | — |
tigress/rights Version >=2026 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.