Package Health

aubert-alexis/symfony5-cms

The package includes tests, a changelog, and a usable README. Its small project footprint and lack of security policy add modest transparency concerns; pin this version if you adopt it.

Latest v1.3PackagistPackagist

55%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The latest release was over five years ago, with no releases in the last 12 months and only four releases overall. This is substantial evidence of stagnation, although the repository is not archived.

Licensecaution

The manifest declares a proprietary license, and license files are present in the artifact. This means the release is licensed, though the proprietary terms may restrict adoption compared with a permissive open-source license.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months, while its last push was in January 2023. The project is not archived, but current maintenance capacity is not demonstrated.

Repo issue activitycaution

There were no new or closed issues or pull requests in the last month, and 21 pull requests remain open. This supports the concern that repository activity has stalled.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected. This is a modest hygiene gap rather than evidence that the release is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/uid
Version 5.1.2
symfony/flex
Version ^1.3.1
symfony/form
Version 5.1.2
symfony/intl
Version 5.1.2
symfony/yaml
Version 5.1.2

Weekly Downloads

Info

Last Published
5 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform