Bundle for format response and request
42%
Total Score
unhealthy
Risky: no releases or repository commits since April 2021, leaving maintenance and compatibility uncertain.
The package has 16 releases but none in the last 12 months; its latest release was in April 2021, about 5 years ago. This strongly raises abandonment risk.
The repository recorded no commits and no active maintainers during the last 3 months, consistent with the release history showing no activity since April 2021.
Neither the package nor the linked repository declares or contains a detectable license, leaving developers without clear permission to use or redistribute the code.
The assessed version is 1.1 while the registry reports 0.5.8 as the latest version, an unusual inconsistency that makes version and compatibility expectations less clear.
The workflow audit completed cleanly with no injection or high-severity findings, but all 3 referenced actions are unpinned, weakening build reproducibility and update safety.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.3 | — | — |
jms/serializer-bundle Version ^3.2 | — | — |
symfony/framework-bundle Version 4.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.