Package Health

atk4/core

The package is well documented, tested, licensed, and backed by an active organization. Its release process and workflow hardening need attention before treating it as a low-maintenance dependency.

Latest 6.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historycaution

The package has 52 releases since 2016, but none in the last 12 months and the latest registry release was over a year ago. This indicates slowed release maintenance despite a historically regular cadence.

Repo bus factorcaution

All two recent commits came from one contributor. Organization backing provides some handoff capacity, but current activity is still highly concentrated.

Repo commit activitycaution

Only two commits were recorded in the last three months, indicating limited recent development activity even though the repository remains active.

Repo toolingcaution

Composer build tooling is present, but no security scanning tooling was detected. This is a modest transparency and maintenance gap for a dependency.

Security policycaution

The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Romans Malinovskis
Imants Horsts
Francesco Danti
Michael Voříšek

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ^1.0 || ^2.0 || ^3.0
—
—
symfony/yaml
Version ^3.4 || ^4.4 || ^5.1 || ^6.0 || ^7.0
—
—
symfony/polyfill-php80
Version ^1.28
—
—
symfony/polyfill-php81
Version ^1.28
—
—
symfony/polyfill-php82
Version ^1.28
—
—

Weekly Downloads

Info

Last Published
1 year ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform