Package Health

code711/solrtools

The stable release history, organization backing, README, and Psalm checks provide useful support for ongoing use. One registry maintainer, no security policy, and limited recent development leave less evidence of durable support.

Latest 3.0.5PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Lifecycle scriptscaution

The package declares four Composer lifecycle scripts, which add install and update execution paths and modestly increase supply-chain exposure.

Maintainerscaution

Only one registry account has publish access, which is a support and release-continuity concern; organization backing provides some compensation but does not remove the single-publisher dependency.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the last three months. Recent release activity partly offsets this, but it leaves current maintenance capacity uncertain.

Security policycaution

No repository security policy was found, reducing transparency about how vulnerabilities are reported and handled.

Workflow auditcaution

Both workflows were analyzed completely and have no untrusted checkout or script-injection findings, but the audit found a high-confidence unpinned container image and all three action references are unpinned.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Frank Berger

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^12.4||^13.4
apache-solr-for-typo3/solr
Version ^12||^13

Weekly Downloads

Info

Last Published
6 months ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform