It has a clear README, MIT licensing, tests, and a matching source repository. Its early release history, no recent commits, broad dependency set, and missing security policy reduce confidence.
58%
Total Score
75
50
78
83
The package declares 27 runtime dependencies, including several Symfony, Doctrine, EasyAdmin, and Tourze components. This broad dependency surface increases upgrade and compatibility burden compared with a narrowly scoped bundle.
The package has only two releases over about 15 months, with one release in the last 12 months and a median interval of about 151 days. This is a thin release history for a young package and lowers maintenance confidence.
There were zero commits and zero active maintainers in the last three months. Although the repository was pushed in December 2025, the recent inactivity is a meaningful abandonment concern.
The repository has zero stars and forks and one watcher. Popularity is only supporting evidence, but these counts provide little external validation or community support.
Composer build tooling is present, but no security scanning tool was detected. This is a hygiene gap rather than evidence that the release is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version ^3.0 | — | — |
symfony/yaml Version ^7.3 | — | — |
doctrine/dbal Version ^4.0 | — | — |
nesbot/carbon Version ^2.72 || ^3 | — | — |
symfony/config Version ^7.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.