Unoconv bundle for our Symfony 4 projects
38%
Total Score
unhealthy
Risky: no release or commits since September 2018, with a two-file package and no tests or README.
The package has had only two releases, with the latest published about 8 years ago and none in the past 12 months. This is strong evidence of abandonment risk, despite the short initial 15-day release interval.
The repository recorded no commits and no active maintainers in the past 3 months, while its last push was in September 2018. That leaves little evidence of current maintenance capacity.
The artifact and repository each contain only composer.json and src/Unoconv.php. Such a minimal library can be intentional, but it provides little transparency into testing, documentation, or project scope.
The package has no README, tests, or changelog. Missing tests and changelog are normal for published artifacts, but the absent README is a real consumer-documentation gap for a Symfony library.
The repository name does not match the package name, and no README mention was available to establish the relationship. This may be a legitimate sub-package layout, but ownership of the published package is less transparent.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
eightpoints/guzzle-bundle Version ^7.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.