Package Health

cryonighter/valid-request-bundle

Usable with caveats: it is a new v0.1.0 package with only one release and one active contributor, so long-term stability is unproven. The repository is active and well documented, with tests, a changelog, and a matching MIT license.

Latest v0.1.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Project backingcaution

The repository is owned by an individual user rather than an organization, so the single-contributor concentration is not offset by visible organizational backing.

Release historycaution

This package was released only once, on September 12, 2026, and has no established release interval or track record. That makes long-term maintenance and compatibility uncertain for a dependency.

Repo bus factorcaution

All 27 recent commits came from one contributor, leaving a high single-person dependency and increasing abandonment risk if that contributor becomes unavailable.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. The lack of scanning is a transparency and maintenance gap, though it is not by itself evidence of unsafe code.

Security policycaution

The repository has no security policy, so its process for reporting and handling vulnerabilities is unclear. This matters for a reusable web-framework bundle.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Andrey Reshetchenko

Direct Dependencies

DependencyLast ReleaseScore
symfony/mime
Version >=6.4
symfony/validator
Version >=6.4
symfony/http-kernel
Version >=6.4
symfony/dependency-injection
Version >=6.4

Weekly Downloads

Info

Last Published
8 days ago
Created
8 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform