Package Health

dcousineau/orlex

Risky to adopt: this package has had no release since April 2013 and no repository activity for about 10 years. It remains clearly sourced, licensed, documented, and tested, but its long-term abandonment risk outweighs those strengths.

Latest v0.1.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

There has been only one release, published about 13 years ago, with no releases in the last 12 months. This is strong evidence that the package is no longer actively maintained.

Repo commit activitydanger

The repository has recorded zero commits and zero active maintainers in the last 3 months, with the last push about 10 years ago. That prolonged inactivity creates substantial abandonment risk.

Repo toolingcaution

Composer is used as a build tool, which supports reproducible package structure, but no security scanning tools are present. Given the repository’s long inactivity, this is a transparency gap rather than the main reason for the low score.

Security policycaution

The repository has no security policy. For an old web-framework extension with no recent maintenance, the lack of a documented vulnerability-reporting path adds to the project’s transparency concerns.

Version stabilitycaution

The assessed version is v0.1.0 and is not marked as a stable major release. This offers little maturity evidence, although the package’s age and single-release history are the more serious concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Daniel Cousineau

Direct Dependencies

DependencyLast ReleaseScore
silex/silex
Version 1.0.*
—
—
symfony/config
Version >=2.1.0
—
—
doctrine/annotations
Version 1.0.*
—
—

Weekly Downloads

Info

Last Published
13 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform