The artifact is licensed, tested, and backed by an organization with a focused dependency set. Treat its maintenance record as unproven until later releases demonstrate sustained activity.
62%
Total Score
75
100
79
50
The artifact includes tests, and the repository also reports tests; the missing changelog is normal for a newly published package and no release notes are available. The missing README is a minor consumer-documentation gap for a library package.
This package is brand new, with one release published today and no established release cadence. That limits evidence of ongoing maintenance, although the lack of history is partly explained by its age.
No commits or active maintainers were recorded in the last three months. Because the repository was only recently pushed and the package is newly released, this is limited evidence rather than proof of abandonment, but maintenance capacity remains unverified.
Composer is used as the build tool, which fits this package, but no security-scanning tool was detected. That is a modest transparency and hygiene gap rather than a severe dependency risk.
The repository has no security policy. For a small package this is not severe on its own, but it leaves vulnerability-reporting expectations undocumented.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/mailgun-mailer Version 7.4.18 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.