The package is clearly documented and correctly licensed, with a focused metapackage design and organization backing. It is brand new, has no observed commit history, and provides no security policy, so long-term maintenance is not yet demonstrated.
68%
Total Score
83
100
83
88
This is the package's first and only release, published on the assessment day, so there is not yet enough history to demonstrate sustained maintenance.
No commits and no active maintainers were observed in the previous three months. Because the repository was created on the assessment day, this is limited evidence, but it leaves maintenance capacity unproven.
The repository has zero stars, forks, and watchers. This is weak supporting evidence, but popularity is not decisive for a newly published, narrowly scoped metapackage.
The repository uses Composer, appropriate for this package, but no security scanning tools were detected. For a tiny generated type-definition package this is a modest transparency gap, not a severe risk.
The linked repository has no security policy. This weakens disclosure transparency, though the package is a small metapackage with no observed lifecycle scripts.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/symfony-form-impl Version ~7.4.19.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.