Package Health

arogachev/yii2-sortable

The repository remains intact, tested, licensed, and clearly matches the package. Its single-user ownership and no commits in the last 3 months leave maintenance uncertain, while 17 issues remain open.

Latest 0.1.6PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

33

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has seven releases, but the latest registry release was in January 2016 and there have been no releases in roughly 10 years. This is a substantial staleness concern for a dependency.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months. Combined with the old registry release, this materially raises abandonment risk.

Maintainerscaution

Only one registry maintainer is listed. Because the project is backed by an individual repository owner rather than an organization, this leaves limited visible publishing capacity.

Repo issue activitycaution

There are 17 open issues, with no issues or pull requests opened or closed in the last month. This suggests unresolved maintenance demand and limited current responsiveness.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools were detected. This is a modest transparency and maintenance gap, not evidence that the release is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Alexey Rogachev

Direct Dependencies

DependencyLast ReleaseScore
yiisoft/yii2
Version *
yiisoft/yii2-jui
Version *

Weekly Downloads

Info

Last Published
10 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform