It is clearly licensed and includes tests in both the artifact and repository. The organization-backed repository is active and unarchived, but it has no security policy or security scanning.
62%
Total Score
83
100
83
88
This is the package's first release, published today, so there is no release history or cadence demonstrating sustained maintenance yet.
The repository has zero commits and zero active maintainers in the last three months. Because it was created today, this is chiefly an unproven maintenance history rather than evidence of long-term abandonment.
The repository has zero stars, forks, and watchers. For a newly published implementation package this is weak supporting evidence, not a standalone health failure.
Composer is used as the build tool, but no security scanning tool is configured. The missing scanner is a modest transparency and maintenance concern, not a severe risk by itself.
The repository has no security policy. That leaves vulnerability reporting and response expectations undocumented, which is a real but limited adoption concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/http-kernel Version 7.4.19 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.