Package Health

centraldesktop/thrift-php

The package includes a readable guide, tests, and a declared Apache license. Its organization-backed repository is not archived, but the lack of security policy and build security scanning leaves limited transparency for a dependency this old.

Latest 0.9.1PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

58

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has only one release, published over 12 years ago, with no releases in the last 12 months. This is strong evidence of abandonment risk and is not offset by the repository merely remaining available.

Repo issue activitycaution

There were no new or merged pull requests and no issue activity in the last month, consistent with the very old release history. The open-issues count is unknown, so this is supporting rather than conclusive evidence.

Repo toolingcaution

The project uses Make and Composer, showing some build structure, but no security scanning tools were detected. That leaves a modest verification gap for a dependency with no recent activity.

Repository archivedcaution

The repository is not archived, which preserves a basic maintenance path, but it was last pushed over 12 years ago. That status does not compensate for the long period without activity.

Security policycaution

The repository has no security policy, reducing transparency for reporting and handling dependency issues. This is a hygiene gap rather than evidence that the package is unsafe.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Trey Hyde

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
12 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform