Package Health

contaoblackforest/contao-logger

The repository is unarchived and the package includes a substantial README, tests, and an explicit LGPL-3.0+ license. However, it has no releases since May 2015, no recent commits, and no security policy, leaving maintenance and support concerns.

Latest 2.0.1PackagistPackagist

20%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

64

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement specified; this is a direct warning against taking a new dependency on it.

Release historydanger

The latest release was published in May 2015, with zero releases in the last 12 months. This indicates very high abandonment risk despite the package's older release history.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and limited evidence of ongoing maintenance.

Repo toolingcaution

The project uses Composer and Phing build tooling, but no security-scanning tool was detected. This is a modest hygiene gap rather than evidence of unsafe behavior.

Security policycaution

The repository has no security policy, which weakens vulnerability-reporting transparency for a package that handles application logging, although this is secondary to its abandonment signals.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sven Baumann
Dominik Tomasi

Direct Dependencies

DependencyLast ReleaseScore
psr/log
Version ~1.0
contao/core
Version >=2.11.11,<4-dev
monolog/monolog
Version ~1.5
contao-community-alliance/composer-plugin
Version ~2.0
contao-community-alliance/dependency-container
Version ~1.0

Weekly Downloads

Info

Last Published
11 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform