It has a matching organization-owned repository, tests, a clear license, and no install-time scripts. Security scanning is absent, so pin this exact version until a maintenance track emerges.
61%
Total Score
75
86
83
The package was first released 0 days ago and has only one release, so there is no established release or maintenance history yet.
There were 0 commits and 0 active maintainers in the past 3 months, but the repository is newly created, so this is evidence of unproven maintenance rather than abandonment.
Composer is used for the build, but no security-scanning tools were detected, leaving a modest repository-hygiene gap.
The repository has no security policy. For a small implementation package this is a transparency gap, though it is not a severe dependency risk by itself.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/security-csrf Version 7.4.8 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.