Package Health

dez-php/dez-di

It has a matching source repository, a clear MIT license, and no install-time scripts. Its small codebase, lack of tests and security tooling, and minimal documentation provide little evidence of ongoing care.

Latest v1.0.3PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The last release was in September 2015, and there have been no releases in more than 11 years. Four releases over roughly three weeks show an initial burst but no continuing maintenance.

Repo commit activitydanger

The repository has recorded no commits and no active maintainers in the last three months, consistent with the last push being in September 2015. This is strong evidence of abandonment risk.

Package scaffoldingcaution

A README is present and the absence of tests or a changelog in the published artifact is normal packaging practice. However, the README is only 48 characters and the repository also has no tests or changelog, limiting transparency.

Project backingcaution

The repository is owned by a personal user account rather than an organization, so the single registry maintainer is not explained by organization-backed publishing. Combined with inactivity, this leaves a thin maintenance base.

Repo popularitycaution

The repository has zero stars and forks and one watcher, providing no meaningful community support signal. Low popularity alone is not decisive, but it offers no compensation for the long maintenance gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ivan Gontarenko

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
11 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform