Clear licensing, tests, and documentation reduce integration friction. The dependency set is small and install scripts are absent. The repository is not archived, but that does not offset the long inactivity.
42%
Total Score
33
100
69
83
The package has 13 releases but none in the last 12 months; its latest release was in September 2017, indicating roughly nine years without registry maintenance.
There were zero commits and zero active maintainers in the last three months, consistent with the package's long release pause and raising abandonment risk.
The repository is owned by an individual account rather than an organization, and no organizational backing is shown; this provides limited evidence of ongoing maintenance capacity.
There were no new or merged pull requests and no issue activity in the last month; the lack of recent collaboration reinforces the maintenance concern, although open issue count is unknown.
The repository name does not match the package name and its README does not mention the package, so the source-package relationship is not clearly demonstrated.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version >=1.5.0 | — | — |
symfony/symfony Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.