The MIT license, stable versioning, and organization backing make its maintenance model clear. A substantial source tree and clean workflow audit add transparency, while the missing security policy leaves a smaller process gap.
72%
Total Score
75
100
94
88
The repository recorded zero commits and zero active maintainers in the last three months. This is a maintenance caution, although the strong recent release history and recent push provide partial compensation.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest repository-process gap.
No security policy was found in the linked repository, reducing transparency about vulnerability reporting and response expectations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/config Version ^7.0|^8.0 | — | — |
symfony/console Version ^7.0|^8.0 | — | — |
symfony/http-kernel Version ^7.0|^8.0 | — | — |
psr/event-dispatcher Version ^1.0 | — | — |
web-token/jwt-library Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.