The package has a clear license, tests, documentation, and a repository that still matches the package. Maintenance evidence is thin: it has had no release or repository push since March 2024, and the project has no security scanning or policy.
58%
Total Score
50
72
75
Only one release exists, published in March 2024, with no releases in the following two years and several months. That makes ongoing maintenance and compatibility uncertain.
The repository is owned by a user account rather than an organization, so there is no organizational backing signal to compensate for the thin activity history.
There have been no new or closed issues or pull requests in the measured month, and no open work is visible. Combined with the old release and push dates, this supports a weak maintenance picture.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these figures provide little evidence of community adoption.
Composer build tooling is present, but no security scanning tools were detected. That limits evidence of proactive security maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/finder Version ^5|^6 | — | — |
aws/aws-sdk-php Version ~3.2 | — | — |
symfony/console Version ^5|^6|^7 | — | — |
illuminate/config Version ^8|^9|^10|^11 | — | — |
laravel/framework Version ^8|^9|^10|^11 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.