Package Health

cryodrift/fw

Usable with caveats: the release is licensed, documented, non-deprecated, and backed by a matching repository, but its 41 releases were concentrated in about 16 days and there is no security policy or visible community activity. Treat it as a young, lightly validated framework and pin the version.

Latest 0.1.53PackagistPackagist

58%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Dependency profilecaution

The framework declares 14 runtime requirements, mostly PHP extensions, which creates a relatively broad environment requirement for consumers. These requirements are explicit rather than opaque, so this is a usability concern rather than a severe health risk.

Release historycaution

The package has 41 releases, but they were concentrated between January 15 and January 31, 2026, with no newer release shown despite the assessment occurring about eight months later. This combination suggests an immature or stalled release pattern.

Repo issue activitycaution

There are no open issues or pull requests and no issue or pull-request activity in the last month. This may reflect a small project, but it provides no evidence of active community maintenance.

Repo popularitycaution

The repository has zero stars, forks, and watchers, indicating no visible external adoption or review. Popularity is supporting evidence only, but this leaves little independent validation for a young framework.

Repo toolingcaution

Composer is used as a build tool, which fits the PHP package, but no security-scanning tooling is configured. That weakens repository transparency and automated oversight.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
7 months ago
Created
8 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform