Tests, documentation, and an MIT declaration make the package reasonably transparent. Its tiny adoption footprint, absent security policy, and lack of recent release activity increase the maintenance risk.
44%
Total Score
63
100
78
83
There has been only one release, published over seven years ago, with no releases in the last 12 months; this is strong evidence of an unmaintained release line.
There were zero commits and zero active maintainers in the last three months, indicating that current maintenance activity has effectively stopped.
There are no new or closed issues in the last month and two open pull requests, suggesting little visible project activity; this reinforces the maintenance concern.
The repository has only 2 stars and no forks, indicating a very small adoption footprint and limited external validation; this is supporting caution rather than a verdict alone.
Composer build tooling is present, but no security scanning tools are reported, leaving a repository hygiene gap without proving a security problem.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
doctrine/orm Version 2.* | — | — |
symfony/validator Version ~2.8|~3.0|~4.0 | — | — |
symfony/framework-bundle Version ~2.8|~3.0|~4.0 | — | — |
symfony/expression-language Version ~2.8|~3.0|~4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.