The README clearly explains the metapackage, its generated type dependency, and the ownership process; licensing and organization backing are also solid. Composer is the only build tool and no security scanning or policy is visible, limiting transparency for future changes.
65%
Total Score
75
100
88
83
This package is brand new: it has one release, published today, with no established release cadence. That leaves maintenance maturity unproven, though it is not evidence of abandonment by itself.
There were no commits and no active maintainers in the last three months. Because the repository was created or updated at release time, this mainly shows that sustained maintenance has not yet been demonstrated rather than proving abandonment.
The repository uses Composer, but no security scanning tool is configured. That is a modest transparency and change-assurance gap for future releases.
No repository security policy was found. For a small generated type-definition package this is a limited gap, but it reduces the project's documented response path for security issues.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/symfony-uid-impl Version ~7.4.17.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.