Package Health

encore-labs/guzzle-bundle-header-forward-plugin

Healthy and reasonable to depend on. It has a recent stable release, an active unarchived repository, tests, clear documentation, and organization backing; maintenance is currently concentrated in one contributor and the repository has no security scanning or policy.

Latest v4.2.0PackagistPackagist

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Dependency profilecaution

Seven runtime dependencies are substantial for a small integration plugin, including Guzzle, the Guzzle bundle, and several Symfony components. They are relevant to the package's stated purpose, so this is a manageable rather than severe concern.

Repo bus factorcaution

All recent commit activity came from one contributor, creating a thin operational base. Organization ownership provides some ability to hand maintenance off, so this is a caution rather than a severe abandonment risk.

Repo commit activitycaution

The repository recorded one commit in the last 3 months from one active maintainer. Recent activity is positive, but the very low volume limits evidence of sustained maintenance capacity.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. This weakens automated supply-chain oversight without outweighing the package's recent releases, tests, and active repository.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This is a transparency gap, but not evidence that the package is unsafe to use.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Adrien Roches
Tom Cawthorn
Community

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version ^5.4 || ^6.4 || ^7.0
symfony/config
Version ^5.4 || ^6.4 || ^7.0
guzzlehttp/guzzle
Version ^6.0 || ^7.0
symfony/http-kernel
Version ^5.4 || ^6.4 || ^7.0
eightpoints/guzzle-bundle
Version ~8.0

Weekly Downloads

Info

Last Published
14 days ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform