Package Health

davidbadura/fixtures

It has an MIT license, tests, release notes, and no install-time scripts. Its single-maintainer footprint and absent security policy provide little additional confidence.

Latest 1.3.2PackagistPackagist

18%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement specified. Package-level deprecation is a severe adoption risk even though this release is stable.

Release historydanger

The package has eight releases over more than 12 years, but none in the last 12 months; the latest release was published about four years ago. This supports an abandonment concern.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months. Together with the archived repository and abandoned package status, this indicates no current maintenance capacity.

Repository archiveddanger

The linked source repository is archived, which signals that active project maintenance has ended. The recorded push date does not compensate for the repository's archived status.

Maintainerscaution

One registry maintainer is consistent with an individually owned project, but it leaves little visible publishing redundancy. The repository's User ownership does not provide organizational backing to offset that thin base.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

David Badura

Direct Dependencies

DependencyLast ReleaseScore
symfony/finder
Version ^4.4|^5.3|^6.0
symfony/event-dispatcher
Version ^4.4|^5.3|^6.0

Weekly Downloads

Info

Last Published
4 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform