Package Health

dmitriygalitsyn/composer-example-package

The package has seen no release or repository activity since December 2017, and its source tree is extremely small with no README or tests. The linked repository name does not match the package, which makes ownership and ongoing maintenance less clear.

Latest 1.1.0PackagistPackagist

35%

Total Score

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

56

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

67

Health Score Breakdown

Release historydanger

Only two releases were published, both on December 29, 2017, with no releases in the last 12 months. That long period without a new release is strong evidence of abandonment risk.

Repository archiveddanger

The repository is not archived, but it was last pushed on December 29, 2017. Its unarchived status does not compensate for nearly nine years without observed source activity.

Package file treecaution

The package and repository each contain only four files: composer metadata and two source files. This may fit an example project, but it provides little evidence of a mature, actively maintained library.

Package scaffoldingcaution

The artifact has no README, tests, or changelog; missing tests and changelog are normal for published artifacts, but the missing README reduces consumer transparency. A GitHub release exists for this version, which partly compensates for release documentation.

Repo package mentioncaution

The repository name does not match the package name, and no README mention was found. That mismatch makes it less clear that the linked repository is the intended source for this package.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Dmitriy Galitsyn

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform