Its Apache-2.0 licensing, matching license file, clear README, and organization-backed repository are reassuring. The tiny metapackage has no tests, changelog, security policy, or scanning tools, though those gaps are less significant for this packaging role.
70%
Total Score
100
100
88
88
The package was first published today and has only one release, so there is no release history to demonstrate sustained maintenance or stability.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tool is configured; this is a modest transparency gap for a brand-new package.
The repository has no security policy. For a small type-definition metapackage this is a minor gap, but it leaves vulnerability-reporting expectations unspecified.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/symfony-validator-impl Version ~7.4.19.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.