Package Health

alistairshaw/vendirun

Vendirun plugin for front-end Laravel website

Latest 1.2.2.0PackagistPackagist

42%

Total Score

unhealthy

Risky: no releases or commits since March 2018, leaving maintenance and compatibility uncertain.

Health Score Breakdown

Release historydanger

The package has 39 releases since August 2016, but none in the last 12 months; the latest release was in March 2018, over eight years ago. This strongly indicates abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, with no newer release activity to compensate for the inactivity.

Maintainerscaution

Only one registry publisher is listed, leaving little visible publishing redundancy; the repository is user-owned rather than organization-backed, so this remains a real resilience concern.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tooling was detected, leaving a modest repository hygiene gap.

Security policycaution

The linked repository has no security policy, reducing transparency about vulnerability reporting and maintenance expectations.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alistair Shaw

Direct Dependencies

DependencyLast ReleaseScore
thujohn/twitter
Version ~2.0
—
—
guzzlehttp/guzzle
Version ^6.0@dev
—
—
laravel/framework
Version 5.2.*
—
—
stripe/stripe-php
Version ^3
—
—
paypal/rest-api-sdk-php
Version *
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform