Package Health

canaltp/scrum-board-it-bundle

The release includes a short README and exact-version release notes, while its organization-backed source provides useful context. Its install and update hooks, lack of security policy, and old dependency stack add maintenance overhead.

Latest v0.2.1PackagistPackagist

15%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Release historydanger

The package has had four releases since June 2016, with no releases in the last 12 months and the latest release in January 2018. This strongly indicates abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the archived state and reinforcing abandonment risk.

Repository archiveddanger

The linked repository is archived and was last pushed in January 2018, making continued maintenance unlikely and creating a severe dependency risk.

Lifecycle scriptscaution

The package runs post-install and post-update scripts, which add installation complexity and execution surface even though no specific harmful behavior is shown.

Security policycaution

The linked repository has no security policy, reducing transparency for reporting and handling vulnerabilities. The archived project provides no compensating maintenance evidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
doctrine/orm
Version ^2.5
symfony/symfony
Version 3.0.*
guzzlehttp/guzzle
Version ^6.2
symfony/assetic-bundle
Version ^2.8
symfony/monolog-bundle
Version ^2.8

Weekly Downloads

Info

Last Published
9 years ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform