The package has a valid MIT license and a published GitHub release for this version. Its dependency surface is substantial, while the repository has no security scanning or active workflow checks.
12%
Total Score
50
58
75
Packagist marks the entire package as abandoned, with no replacement provided. This directly indicates that maintainers no longer recommend depending on it.
The repository had zero commits and zero active maintainers in the last 3 months, reinforcing the abandonment signal rather than showing ongoing maintenance.
The linked repository is archived, so the source is no longer maintained for ongoing fixes or compatibility work.
The package has 20 releases since July 2020, but none in the last 12 months; the latest release is from March 2024. This supports a materially slowed maintenance picture.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. The archived state makes this gap more consequential.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.0 | — | — |
doctrine/orm Version ^2.10|^3.0 | — | — |
symfony/form Version ^6.4 | — | — |
symfony/mailer Version ^6.4 | — | — |
symfony/validator Version ^6.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.