Package Health

beechit/bynder

The linked project is not archived and matches the package, with a usable README, release record, and small dependency set. Security scanning and a security policy are absent, while five pull requests remain open without recent activity.

Latest 0.0.3PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has only three releases, with the latest published in October 2018 and none in the last 12 months. This long release gap is a strong abandonment concern for a production integration.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months. Combined with the stale registry release history, this indicates a substantial maintenance and abandonment risk.

Lifecycle scriptscaution

A post-autoload-dump install-time script is present. Composer lifecycle hooks can execute package code during installation, so this deserves review even though the indicator provides no evidence that the script is harmful.

Repo issue activitycaution

There are five open pull requests but no new or merged pull requests in the last month, suggesting that proposed work is not currently being integrated.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured. That is a transparency and maintenance weakness for a package that handles external service credentials.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Frans Saris

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^8.7.13 || ^9.3
—
—
bynder/bynder-php-sdk
Version ^1.0.5
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform