The package is MIT-licensed and its source clearly matches the package, but its 59-character README offers little integration guidance. No security policy or scanning is visible, adding maintenance uncertainty.
32%
Total Score
0
60
50
The latest of 9 releases was published in May 2015, with no releases in the last 12 months. More than 11 years without a release is strong evidence of abandonment for a library dependency.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, consistent with the long release hiatus and leaving no evidence of current maintenance.
The release includes a README, but it is only 59 characters and provides minimal guidance for integrating this Symfony bundle. The absence of tests and a changelog in the package is normal packaging practice and is not itself a gap.
Composer build tooling is present, but no security-scanning tools are configured. That weakens confidence in ongoing maintenance, especially alongside the lack of recent activity.
The repository has no security policy, which makes vulnerability reporting and response expectations unclear. This is a secondary transparency gap rather than evidence of a security defect.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/framework-bundle Version ~2.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.