Package Health

blitz-php/framework

The package is licensed, documented, actively released, and supported by an organization. Its pre-release status, single active contributor, and workflow weaknesses leave meaningful adoption risk.

Latest 1.0.13-rcPackagistPackagist

64%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Repo bus factorcaution

One contributor made all 14 recent commits. Organization backing provides some handoff capacity, but no second active contributor is shown to share the maintenance load.

Repo commit activitycaution

The repository had 14 commits in the last three months, indicating recent work, but all activity came from one active maintainer.

Version stabilitycaution

This release is a pre-release and 70% of recent releases are pre-releases, so consumers should expect less API stability than with a mature stable release.

Workflow auditcaution

All 15 analyzed action references are unpinned, and three workflows grant top-level write access; the high-confidence bot-conditions finding in the Dependabot auto-merge workflow adds further workflow hygiene risk despite no untrusted checkout or script-injection findings.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dimitri Sitchet Tomkeu

Direct Dependencies

DependencyLast ReleaseScore
nette/schema
Version ^1.3
kint-php/kint
Version ^6.1
php-di/php-di
Version ^7.1
blitz-php/cache
Version ^1.4
guzzlehttp/psr7
Version ^2.9

Weekly Downloads

Info

Last Published
18 days ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform