Package Health

blioxxx/contao-universal-library

Its license files exist, and the package has no install-time scripts or registry deprecation. The small repository has no tests, security policy, or security scanning, adding transparency gaps.

Latest 0.4.0PackagistPackagist

32%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

56

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has only one release, published over 10 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk despite the repository still being available.

Licensecaution

A license file is present in both the artifact and repository, but it is detected as GPL-3.0 while the manifest declares LGPL-3.0+, creating a licensing mismatch that needs clarification.

Licensecaution

The package includes a license file, so licensing is not absent; the concern is limited to the mismatch between the declared and detected licenses.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counters provide no evidence of a broad active user base.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured. This is a modest project-hygiene gap alongside the long maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mirco Kibiger

Direct Dependencies

DependencyLast ReleaseScore
contao/core
Version >=3.4,<4
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform