Package Health

4slv/doctrine2

The repository has no stars or forks and lacks automated security scanning, despite having tests, documentation, a security policy, and a clear MIT license. Its long inactivity makes future fixes and compatibility work unlikely.

Latest v2.5.14PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Release historydanger

The package has 57 releases but none in the last 12 months; its latest release was published in December 2017, indicating prolonged abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, with its last push in December 2017. This is strong evidence that maintenance has stopped.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, and no pull requests were merged, providing no evidence of current project activity.

Repo popularitycaution

The repository has zero stars, forks, and watchers, so there is little visible community adoption or external support to offset the lack of maintenance.

Repo toolingcaution

Composer and Phing are used for the build, but no security scanning tools are present. This is a hygiene gap, though it is less serious than the prolonged inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Roman Borschel
Benjamin Eberlei
Guilherme Blanco
Jonathan Wage

Direct Dependencies

DependencyLast ReleaseScore
doctrine/dbal
Version >=2.5-dev,<2.7-dev
—
—
doctrine/cache
Version ~1.4
—
—
doctrine/common
Version >=2.5-dev,<2.9-dev
—
—
symfony/console
Version ~2.5|~3.0|~4.0
—
—
doctrine/collections
Version ~1.2
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
14 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform