The package includes tests and a usable README, and its dependency set is modest. It has no security policy or automated security scanning, so ongoing oversight is limited.
42%
Total Score
75
75
75
The package has had no release in more than 7 years, despite 49 releases before that; this is strong evidence of abandonment risk for a dependency.
There have been no new issues, pull requests, or merges in the last month, consistent with the long gap since the last release and suggesting little current project activity.
The linked repository name does not match the package name and its README does not mention the package, making package ownership and source correspondence less transparent.
The repository uses Composer but reports no security-scanning tooling, leaving less evidence of ongoing dependency and code oversight.
No security policy is present, reducing transparency about how vulnerabilities are reported and handled.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^2.4.2 | — | — |
ralouphie/mimey Version ^2.0 | — | — |
symfony/framework-bundle Version >=3.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.