Package Health

app-accounts/elastica

The package includes its license, README, changelog, and repository tests. Its workflow leaves all five actions unpinned, and no security policy or security scanning is present.

Latest 7.1.3PackagistPackagist

45%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was over two years ago, with no releases in the last 12 months. The historical count of 74 releases shows prior activity but does not offset the current pause.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months. Combined with the lack of recent releases, this is strong evidence that maintenance has stopped.

Repo toolingcaution

The repository uses Composer and Make, providing build structure, but no security scanning tools were detected. This is a moderate transparency and maintenance gap.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented. This matters for a client library handling service connections.

Version stabilitycaution

The assessed release is stable and not a prerelease, which supports adoption; however, the reported latest version is 6.2.4 while this release is 7.1.3, creating a version-data consistency concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Nicolas Ruflin

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.0 || ^2.0 || ^3.0
—
—
nyholm/dsn
Version ^2.0.0
—
—
symfony/polyfill-php73
Version ^1.19
—
—
elasticsearch/elasticsearch
Version ^7.1.1
—
—
symfony/deprecation-contracts
Version ^2.2
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
14 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform