Its 19 runtime dependencies increase upgrade and compatibility work, while all four workflow actions are unpinned. The package is licensed, tested, documented, non-deprecated, and its repository is active enough to avoid an abandonment verdict.
64%
Total Score
75
50
81
67
The package declares 19 runtime dependencies, including several framework and related bundle packages, creating meaningful compatibility and upgrade surface.
The package has five releases over 548 days, but only one release in the last 12 months; this is a modest maintenance concern for a young package.
There were zero commits and zero active maintainers in the last three months, indicating recently stalled development and raising abandonment risk.
Composer is used for builds, but no security scanning tools are present in the repository, leaving a security-hygiene gap.
The repository has no security policy, making vulnerability reporting and response expectations less transparent.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^3.0 | — | — |
symfony/yaml Version ^7.3 | — | — |
doctrine/dbal Version ^4.0 | — | — |
symfony/config Version ^7.3 | — | — |
doctrine/common Version ^3.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.