The release is licensed, includes tests and a usable README, and has no install-time scripts. Its small repository and absent security policy leave little evidence to offset the long-standing maintenance gap.
38%
Total Score
0
100
71
75
The package has made no release in about 14 years; its latest release was in July 2012, creating a substantial abandonment risk despite its four historical releases.
The repository recorded no commits in the last 3 months, consistent with its last push being in January 2013. This leaves no evidence of current maintenance.
The repository name does not match the package name and its README does not mention the package, so the source association is not clearly demonstrated and adds transparency risk.
The repository has one star and no forks or watchers. Popularity is only supporting evidence, but these counts provide little external evidence of active project use or review.
The repository has no security policy, reducing transparency about vulnerability reporting and maintenance practices; the long maintenance gap makes this omission more significant.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/form Version 2.1.* | — | — |
symfony/twig-bridge Version 2.1.* | — | — |
symfony/framework-bundle Version 2.1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.