Package Health

chomenko/confirm

The README documents installation and usage, and the artifact matches the linked repository. Its five runtime dependencies and absent security tooling add maintenance burden; consider a maintained alternative.

Latest v2.0.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was published in July 2019, and there have been no releases in the last 12 months after more than seven years of package age. This is strong evidence of abandonment risk.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers during the last three months, consistent with the long release gap and leaving little evidence of ongoing maintenance.

Licensecaution

The package declares no license, contains no license file, and the linked repository also has no license file. That creates a material legal and transparency gap for adoption.

Repo popularitycaution

The repository has zero stars, forks, and watchers. Popularity is only supporting evidence, but these counters provide no additional community or continuity signal.

Security policycaution

The linked repository has no security policy and no security-scanning tools. This is a maintenance and disclosure gap, though it is less severe than the observed inactivity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mykola Chomenko

Direct Dependencies

DependencyLast ReleaseScore
kdyby/events
Version ^3.1
—
—
chomenko/modal
Version ^3.0
—
—
chomenko/extra-form
Version ^3.0
—
—
doctrine/annotations
Version ^1.6
—
—

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform