The Sulu Bundle for managing products
28%
Total Score
unhealthy
Risky: Packagist marks this package abandoned, despite active repository work and release documentation.
Packagist marks the entire package abandoned and names sulu/product-bundle as its replacement, making continued adoption a significant maintenance risk.
The package has 97 releases since 2015, but no releases in the last 12 months and its latest registry release was in May 2018, indicating the published package is stale.
The repository name does not match the package name and its README does not mention the package, so the linkage is less transparent even though the repository is organization-owned.
Composer build tooling is present, but no security-scanning tooling was detected, leaving a modest transparency and assurance gap.
The repository has no security policy, so vulnerability reporting and response expectations are not documented.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sulu/sulu Version ~1.3 | — | — |
doctrine/orm Version 2.5.* | — | — |
sulu/validation-bundle Version ~0.1 | — | — |
oro/doctrine-extensions Version 1.0.* | — | — |
willdurand/hateoas-bundle Version >=0.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.