Regular releases, tests, release notes, and organization backing provide useful continuity. The small repository audience and absent security policy limit assurance, while the license and simple dependency setup are clear.
72%
Total Score
83
100
92
50
The repository recorded no commits and no active maintainers in the last three months. This is a meaningful maintenance concern, although the release history shows activity within the last year.
Composer build tooling is present, but no security scanning tools were detected. This reduces evidence of ongoing security hygiene without indicating that the package is unsafe.
The repository has no security policy. That limits transparency about vulnerability reporting and response expectations for adopters.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ^3.26 | — | — |
doctrine/orm Version ^3.3 | — | — |
symfony/twig-bundle Version ^6.4 | — | — |
doctrine/doctrine-bundle Version ^2.18 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.