Package Health

liip/imagine-bundle

This bundle provides an image manipulation abstraction toolkit for Symfony-based projects.

Latest 2.18.1PackagistPackagist

82%

Total Score

healthy

Active releases and maintenance support this package, but all workflow actions are unpinned and the repository does not clearly name the package.

Health Score Breakdown

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package, so package ownership is less explicit; this may reflect a bundle or monorepo naming convention but remains a transparency caution.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool is reported. The missing scanner is a modest transparency gap, not evidence of abandonment.

Security policycaution

No repository security policy is present, leaving vulnerability reporting and response expectations less transparent for a library with broad application use.

Workflow auditcaution

All three workflows were analyzed successfully with no dangerous triggers, untrusted checkouts, script injections, or audit findings. However, all 9 action references are unpinned, creating a reproducibility and action-supply-chain hygiene gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Liip and other contributors

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version ^1.44|^2.9|^3.0
—
—
symfony/mime
Version ^5.4|^6.4|^7.3|^8.0
—
—
symfony/finder
Version ^5.4|^6.4|^7.3|^8.0
—
—
imagine/imagine
Version ^1.3.2
—
—
symfony/process
Version ^5.4|^6.4|^7.3|^8.0
—
—

Weekly Downloads

Info

Last Published
2 days ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform