Usable with caveats: it is a young, actively released Symfony bundle with a matching repository and clear README, but all recent commits come from one contributor and the repository has no security scanning or policy. The organization backing reduces abandonment risk somewhat, but this remains a small project.
68%
Total Score
83
100
89
88
One contributor made all 19 commits in the last three months, creating a genuine continuity risk. Organization ownership offers some handoff capacity, but no second active contributor is shown.
The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counters provide no external adoption signal for this very young package.
Composer is used as a build tool, but no security scanning tools are configured. That is a transparency and maintenance gap, though it is not by itself evidence that the package is unsafe.
The repository has no security policy. For a package that reads Markdown files and renders content, the missing reporting guidance is a modest transparency gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/markdown-extra Version ^3.0 | — | — |
wexample/symfony-helpers Version >=8.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.