Package Health

contenir/contenir-config

Framework-agnostic PHP-array config file reader/writer with atomic writes and opcache invalidation. Adapted from Laminas\Config.

Latest v2.1.0PackagistPackagist

72%

Total Score

caution

A brand-new release history and limited commit history are tempered by solid packaging and organization-backed repository evidence.

Health Score Breakdown

Release historycaution

The package has only 4 releases, all published within the same day, so there is not yet enough history to demonstrate sustained maintenance.

Repo commit activitycaution

There were 0 commits and 0 active maintainers in the last 3 months. Because the repository was just released and shows 4 merged pull requests in the last month, this is a limited-history concern rather than evidence of abandonment.

Repo toolingcaution

Composer is used for the build, but no security scanning tool was detected, leaving a modest repository hygiene gap.

Security policycaution

The repository has no security policy, so vulnerability reporting expectations are not documented.

Workflow auditcaution

The single workflow was fully analyzed with no untrusted checkout or script-injection findings, but it has one high-confidence medium-severity secrets-inherit finding and its only action use is unpinned.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
webimpress/safe-writer
Version ^2.2
—
—

Weekly Downloads

Info

Last Published
1 day ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform