The small artifact has a clear README, license, and release notes, while its four runtime dependencies keep the integration surface modest. A missing security policy and no recorded commits in the last three months leave maintenance visibility weaker.
68%
Total Score
50
100
89
75
No commits and no active maintainers were recorded during the last three months. This weakens evidence of ongoing maintenance, even though the package had a recent release.
The repository has one star, no forks, and one watcher, showing very limited public adoption. Popularity is only supporting evidence, so this modestly reduces confidence rather than determining health.
Composer build tooling is present, but no security scanning tools were detected. For a small package this is a transparency and monitoring gap rather than a severe risk.
The repository has no security policy. That makes vulnerability reporting and response expectations less transparent for dependents.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/process Version ^5.4 || ^6.0 || * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.