Package Health

cowegis/contao-geocoder

The repository is active, correctly linked, licensed, and supported by Dependabot. Its organization-backed project still has only one active contributor, limiting maintenance redundancy.

Latest 1.0.2PackagistPackagist

70%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has six releases since June 2019, but none in the last 12 months and a median release interval of about 364 days. The repository remains active, so this indicates slow release cadence rather than abandonment.

Repo bus factorcaution

All eight recent commits came from one contributor, so maintenance depends heavily on a single person. Organization ownership provides some handoff potential but no second active contributor is shown.

Security policycaution

No security policy was found in the repository, leaving no documented route for reporting vulnerabilities.

Workflow auditcaution

The sole workflow was fully analyzed with no detected dangerous findings, but all six action references are unpinned. The missing top-level permissions block is not concerning by itself because the workflow has no write permissions.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

David Molineus

Direct Dependencies

DependencyLast ReleaseScore
twig/twig
Version ^3.0
nyholm/psr7
Version ^1.8
doctrine/dbal
Version ^3.4
symfony/cache
Version ^5.4 || ^6.4 || ^7.0
symfony/config
Version ^5.4 || ^6.4 || ^7.0

Weekly Downloads

Info

Last Published
1 year ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform