The package is clearly identified, includes a useful README, and declares MIT licensing. Its small, untested codebase and lack of security tooling provide little evidence of long-term support.
43%
Total Score
50
100
79
88
Only two releases were published, both in January 2020, with no releases in the last 12 months. This is strong evidence that the package is no longer actively maintained.
There were no commits or active maintainers in the last three months, consistent with the repository having been untouched since January 2020. This materially increases abandonment and compatibility risk.
The repository has only 2 stars, 0 forks, and 1 watcher. Low popularity is supporting evidence rather than a verdict, but it offers little external evidence of maturity or community support.
Composer build tooling is present, but no security scanning tools are reported. That is a modest transparency and maintenance gap for a package with no recent activity.
The repository has no security policy. This weakens the project's vulnerability-reporting transparency, although it is less significant than the long-standing inactivity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
symfony/lock Version ^4.4|^5.0 | — | — |
symfony/process Version ^4.4|^5.0 | — | — |
symfony/messenger Version ^4.4|^5.0 | — | — |
symfony/framework-bundle Version ^4.4|^5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.