Usable with caveats: the package is clearly licensed, documented, tested in its repository, and backed by a matching organization repository. However, it is very young, has released only twice, and shows no commits or issue progress in the last three months, so maintenance continuity is not yet established.
58%
Total Score
67
100
81
67
This is a young package, about 148 days old, with only two releases concentrated within roughly one day and no later release activity shown. That limited history makes long-term maintenance uncertain.
The repository recorded zero commits and zero active maintainers during the last three months. For a package this young, that is a meaningful warning that maintenance may have stalled.
One issue and one pull request remain open, with no issues or pull requests closed in the last month. This is limited evidence, but it suggests unresolved maintenance work.
The repository uses Make and Composer build tooling, but no security-scanning tool was detected. The missing scanner is a hygiene gap rather than evidence that the package is unsafe.
No SECURITY policy was found in the repository. For a package that handles API credentials and exchanges translation data, the absence reduces transparency around vulnerability reporting.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/mime Version ^6.4|^7.0|^8.0 | — | — |
symfony/http-client Version ^6.4|^7.0|^8.0 | — | — |
symfony/http-kernel Version ^6.4|^7.0|^8.0 | — | — |
symfony/translation Version ^6.4|^7.0|^8.0 | — | — |
symfony/dependency-injection Version ^6.4|^7.0|^8.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.