Package Health

php-llm/llm-chain-bundle

It includes a clear README, MIT licensing, tests, and release notes for version 0.25.0. The source is archived and the package is deprecated, so new projects should migrate to symfony/ai-bundle instead.

Latest 0.25.0PackagistPackagist

12%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

40

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names symfony/ai-bundle as its replacement. This is a direct warning against taking a new dependency on this package.

Release historydanger

The package had 36 releases over about two years, but none in the last 12 months; its latest release was July 16, 2025. The earlier rapid cadence does not compensate for the sustained release gap.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the last three months. This confirms that development has stopped rather than merely slowed.

Repository archiveddanger

The linked repository is archived, with its last push on July 16, 2025. Archived source is a severe abandonment risk for a framework integration bundle.

Workflow auditcaution

The single workflow was fully analyzed with no dangerous triggers or audit findings, but all 6 action references are unpinned. This is a modest reproducibility and supply-chain hygiene concern, not the reason the package is unfit.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Christopher Hertel
Oskar Stark

Direct Dependencies

DependencyLast ReleaseScore
symfony/config
Version ^6.4 || ^7.0
symfony/string
Version ^6.4 || ^7.0
php-llm/llm-chain
Version ^0.24
symfony/framework-bundle
Version ^6.4 || ^7.0
symfony/dependency-injection
Version ^6.4 || ^7.0

Weekly Downloads

Info

Last Published
1 year ago
Created
2 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform