Risky to adopt: the package has had no release in over six years, creating a strong abandonment concern. It is documented and licensed, but source transparency is limited and the dependency stack is substantial for an unmaintained bundle.
43%
Total Score
50
80
100
The package has 23 releases dating back to 2018, but its latest release was over six years ago and it had no releases in the last 12 months. That long inactivity is a strong abandonment risk despite the earlier release history.
The package declares 10 runtime dependencies, including Symfony, Redis, RabbitMQ, and frontend-related components. This creates meaningful maintenance and compatibility exposure for a package whose release activity has stopped, although the dependency count alone is not severe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ~1.34|~2.4 | — | — |
predis/predis Version ^1.1 | — | — |
symfony/symfony Version >=3.4 | — | — |
wisembly/elephant.io Version ~3.0 | — | — |
xlabs/rabbitmqbundle Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.